KaoTan Web Downloader


· Overview ·
· Origins ·
· Operation ·
· Detection and Removal ·
· Research ·



Overview

Vendor Notes:

from the doc: 'KaoTan is a webdownloader made to suit users' needs. Here are its features : - You can download up to 2 files - 3 directories where the downloaded files can be saved : a. Windows b. Temp c. System - Injection modes : a. No injection ( standard connection ) b. Browser injection c. Explorer injection d. Trillian/MSN injection - You can set up a timer, thus delaying the execution : a. Off b. 30 seconds c. 1 minute d. 5 minutes - The server can melt, once ran - Critical data such as the URL to the file to download, or the names of the .exe, are encrypted'

Alias:

TrojanDownloader.Win32.Kaotan

Category:

Downloader: A program designed to retrieve and install additional files, when run. Most will be configured to retrieve from a designated web or FTP site.

Similar Pests:

Downloader

Origins

Author:

Faiseur

EMail:

faiseur-@ifrance.com

URL:

http://www.undergroundkonnekt.cjb.net/

Date of Origin:

March, 2004

Operation

Storage Required:

  • KaoTan Web Downloader: at least 317 KB
  • Detection and Removal

    Automatic Removal:

    PestPatrol detects this.

    PestPatrol removes this.



    Manual Removal:

    Follow these steps to remove KaoTan Web Downloader from your machine. Begin by backing up your registry and your system, and/or setting a Restore Point, to prevent trouble if you make a mistake.
    Stop Running Processes:

    Kill these running processes with Task Manager:

    Unregister DLLs:

    Unregister these DLLs with Regsvr32, then reboot:

    Remove Files:

    Remove these files (if present) with Windows Explorer:

    Research

    File Analyses:

    More Info:

  • AllTheWeb, AltaVista, AOL Search, Ask Jeeves, Google, HotBot, Lycos, LookSmart, MSN, Yahoo!
  • Research By:

  • PestPatrol's Pest Research Center
  • Last Revised:

    June 27, 2004