Troj/Dloadr-AZK is a downloading Trojan for the Windows platform.
Troj/Dloadr-AZK includes functionality to access the internet and communicate with a remote server via HTTP.
When first run Troj/Dloadr-AZK copies itself to <System>\ggrrgg.exe and creates the file <System>\drivers\fee.
The following registry entry is created to run ggrrgg.exe on startup:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
gtydf
ggrrgg.exe
The Trojan attempts to terminate the following processes:
zlclient.exe
outpost.exe
kpf4ss.exe
kavpf.exe