This Trojan may be downloaded from the Internet. It may also be dropped by another malware. Trend Micro has detected that this Trojan is being spammed via email.
It attempts to download the non-malicious file BORDERF.JPG from the URL http://www.{BLOCKED}inionabierta.cl/images. The downloaded file is stored as LMSVCS.EXE in the root folder.
This Trojan runs on Windows 98, ME, NT, 2000, XP, and Server 2003.
TrendMicro


Reply With Quote