VBS/TrojanDownloader.Agent.OBQ [Threat Name] go to Threat

VBS/TrojanDownloader.Agent.OBQ [Threat Variant Name]

Category trojan
Size 1314 B
Aliases Trojan-Downloader.VBS.Agent.bco (Kaspersky)
  TrojanDownloader:VBS/CoinMiner (Microsoft)
  VBS.Downloader.Trojan (Symantec)
  VBS.DownLoader.581 (Dr.Web)
Short description

VBS/TrojanDownloader.Agent.OBQ is a trojan which tries to download other malware from the Internet.


The trojan does not create any copies of itself.

Other information

The trojan contains a URL address.

It tries to download a file from the address. The HTTP protocol is used in the communication.

The file is stored in the following location:

  • %temp%\­tmp2.exe

The trojan executes the following commands:

  • cmd /c (echo [ZoneTransfer] & echo ZoneId=0) > %temp%\­tmp2.exe:Zone.Identifier
  • cmd /c %temp%\­tmp2.exe

Please enable Javascript to ensure correct displaying of this content and refresh this page.