Troj/Dloader-YZ is a Trojan for the Windows platform.
The Trojan silently downloads and executes a file from a remote location.
When Troj/Dloader-YZ is first run, the following files are created:
C:\Arquivos de programas\Internet Explorer\Custom\IEXPLORE.EXE (also detected as Troj/Dloader-YZ)
C:\Arquivos de programas\Internet Explorer\Custom\SVCHOST (data file, may be safely deleted)
The Trojan creates the following registry entry in order to run each time a user logs on:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
IExplore
"C:\Arquivos de programas\Internet Explorer\Custom\IEXPLORE.EXE"