Sophos

Troj/DollarR-CG

Aliases
  • Trojan-Downloader.Win32.Adload.ic
  • DollarRevenue
  • trojan
Category
Type
What to do
Prevalence low high

Summary

 
Affected operating systems Windows
Characteristics
  • Installs itself in the registry
Included in our products from February 2007 (4.14)
Protection available since 4 January 2007 14:48:13 (GMT)
Detected by All Sophos products

Action

More Information

Troj/DollarR-CG is a downloader Trojan for the Windows platform.

Troj/DollarR-CG includes functionality to access the internet and communicate with a remote server via HTTP.

When Troj/DollarR-CG is installed it creates the file <Windows>\newname.dat.

The following registry entry is created to run Troj/DollarR-CG on startup:

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
newname
<pathname of the Trojan executable>

RSS|Atom
Get reports about the latest virus and spyware threats delivered to your computer