SHA1:
- 04266d8258f7507451d492d5b9cb4887afe33962
A malicious script written in Python and downloaded by Python.BackDoor.33 with capability to check and infect removable media similar to Python.Backdoor.33. The Trojan has the following functions that allow it to:
- Steal information from such browsers as Chrome, Opera, Yandex, Amigo, Torch, Spark;
- Log keystrokes (keylogging);
- Take screenshots;
- Download additional modules written in Python and execute them;
- Download files and save them on a media of the infected device;
- Obtain contents of the specified folder;
- “Travel” across folders;
- Request system information.
Among other matters, structure of Python.BackDoor.35 has a self-update function. However, it is not utilized at the moment.