Summary

Summary
Action
More Information
| Affected operating systems | Windows |
|---|---|
| Included in our products from | March 2006 (4.03) |
| Protection available since | 20 January 2006 11:21:04 (GMT) |
| Detected by | All Sophos products |
Action

Summary
Action
More Information
Please follow the instructions for removing Trojans.
More Information
Troj/Clagger-D is a downloader Trojan for the Windows platform.
Troj/Clagger-D attempts to download a file to the Windows folder from a remote website and execute it. This file is currently detected as Troj/CashGrab-L.
Troj/Clagger-D has been seen sent out in spam with subject lines including "ERROR:YOUR CREDIT CARD OVERDRAFT EXCEED!" and "The Overdaft Exceed" and with attachment filenames including file1185.exe Troj/Clagger-D is a downloader Trojan for the Windows platform.
Troj/Clagger-D attempts to set the following registry entry to bypass the Windows firewall:
HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\
firewallpolicy\standardprofile\authorizedapplications\list\
<path to Trojan
<path to Trojan>:*:enabled:EarthWormJimm
Troj/Clagger-D attempts to download a file to the Windows folder from a remote website and execute it. This file is currently detected as Troj/CashGrab-L.
Troj/Clagger-D has been seen sent out in spam with subject lines including "ERROR:YOUR CREDIT CARD OVERDRAFT EXCEED!" and "The Overdaft Exceed" and with attachment filenames including file1185.exe
