Bird_banner_small4
Trojan-Downloader.JS.Ofauthin.A
TSL ID TSL20180410-16
Severity Moderate
Description

Trojan-Downloader.JS.Ofauthin.A is a Trickler that targets the Windows platform. It is reported that the malware has been used in targeted attacks. The malware contacts its control server to download and execute JavaScript code without saving to a file.

Affected Products
  • Microsoft Windows All Versions
File Hashes
MD5:
  • 065ED6E04277925DCD6E0FF72C07B65A
SHA1:
  • EC4006AF73D3903F4D469CA7BEE4D2E4DFC91557
Identifiers
TrendMicro
AegisLab
  • TROJ.SCRIPT.AGENT!C
Antiy-AVL
  • TROJAN/SCRIPT.CLOXER
Rising
  • TROJAN.OBFUS/JS!1.A51E
ViRobot
  • JS.S.AGENT.39658.A
References https://www.fireeye.com/blog/threat-research/2018/04/fake-software-update-abuses-netsupport-remote-access-tool.html
Related Threats