Select Page

The InstallsCash Trojan is live from installation

The InstallsCash Trojan exploits one of the vulnerabilities in Windows Media Player.

Az InstallsCash it gets onto computers when you view malicious websites. In order for the malware file to be downloaded automatically, virus writers have designed the Trojan to exploit a vulnerability in Windows Media Player that could be activated even without user intervention.

The InstallsCash Trojan is live from installation

InstallsCash, as soon as it is installed on a computer, opens a backdoor on it and then downloads and installs additional malware on already infected systems.

When the InstallsCash Trojan starts, it performs the following actions:

  1. Download files via the Internet. It is connected to a predefined server.
  2. Creates files with an .exe extension in the root directory of the C: \ drive. It provides them with a randomly generated file name.
  3. It opens a backdoor and then installs additional malware on infected computers.

About the Author