W32/Stration.DT!dam

Alias/esEmail-Worm.Win32.Warezov.et, Trj/SpamtaLoad.Y, TROJ_STRAT.EQ, W32/Stratio-BF, W32/Warezov.gen3!W32DL, Win32.Warezov.DO@mm, Win32/Stration worm
Release DateOct 26, 2006
Detection Availability
Active DatabaseExtended Database
FortiGatelowhigh
FortiClient
FortiMailN/A
Current Antivirus Definition Database Version: 11.593
Description

Visible Symptoms

  • Possible firewall alert that an executable is attempting to connect to the internet.

Detailed Analysis

  • Detected file is no longer infectious and is a damaged version of the 32bit virus - damaged files have major truncation of code and cannot run.

  • Contains codes that indicate that it would download a file from the following URL:
    http://www6.fand[REMOVED]nha.com/chr/829/nt.exe
    This file is detected as W32/Stration.DS@mm.
Reference: ID - 300684