Sophos

Sophos blogs

Troj/Clagger-AZ

Aliases
  • Trojan-Downloader.Win32.Agent.bhc
Category
Type
What to do
Prevalence low high

Summary

 
Affected operating systems Windows
Characteristics
  • Installs itself in the registry
Protection available since 19 February 2007 21:31:32 (GMT)
Detected by All Sophos products
  • Free virus, spyware, and adware scan
  • Test your existing anti-virus protection
  • Find threats your anti-virus missed

Action

More Information

Troj/Clagger-AZ is a downloader Trojan for the Windows platform.

Troj/Clagger-AZ attempts to download and execute a number of files from remote websites.

When first run Troj/Clagger-AZ copies itself to <System>\iasx.exe and creates the file <System>\drivers\acge.dt.

The file iasx.exe is also detected as Troj/Clagger-AZ.
The file acge.dt is clean and may be deleted.

The following registry entry is created to run iasx.exe on startup:

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
iasx
iasx.exe

RSS|Atom
Get reports about the latest virus and spyware threats delivered to your computer