Friday, January 5, 2007

Troj/DollarR-CG

Name Troj/DollarR-CG
Type Trojan
Affected operating systems Windows
Side effects Installs itself in the Registry
Aliases Trojan-Downloader.Win32.Adload.ic
DollarRevenue trojan

Troj/DollarR-CG is a downloader Trojan for the Windows platform.

Troj/DollarR-CG includes functionality to access the internet and communicate with a remote server via HTTP.

When Troj/DollarR-CG is installed it creates the file \newname.dat.

The following registry entry is created to run Troj/DollarR-CG on startup:

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
newname

Labels: , ,