SD Downloader
Category: Trojan Downloader
Risk:
Severe Risk
* Severe threats typically are remotely exploitable vulnerabilities, which can lead to system compromise. Successful exploitation does not normally require any interaction and exploits are in the wild. There exists a high possibility of potential system damage or security flaw. Attacker has complete control over your computer or install new software on your machine.
Description: SD installs additional spyware on a users computer by downloading it froma remote server. Seen to be distributed by ShopAtHome spyware. SD Downloader installs itself in the users system try (multiple times) promting the user to click it to download additional spyware. The kicker here is when the user clicks it in many cases it asks them to download an anti-spyware package.
Alias: SD
Signatures:
process: sd.exe: MD5 Hash: 312121b7b21d0d4407e
process: sd.exe: MD5 Hash: 90a4801078758769f39
process: sd.exe: MD5 Hash: 5b1f98ff51f1a523bc4
process: sd.exe: MD5 Hash:
process: sd.exe: MD5 Hash: c48114753b511f5d59b
process: sd.exe: MD5 Hash: f35e6ceea4232e3aecd..
Copyright @2006 THR Computer Solutions: SD Downloader