Sophos

Troj/Clagger-D

Aliases
  • CME-503
Category
Type
What to do
Prevalence low high

Summary

 
Affected operating systems Windows
Included in our products from March 2006 (4.03)
Protection available since 20 January 2006 11:21:04 (GMT)
Detected by All Sophos products

Action

More Information

Troj/Clagger-D is a downloader Trojan for the Windows platform.

Troj/Clagger-D attempts to download a file to the Windows folder from a remote website and execute it. This file is currently detected as Troj/CashGrab-L.

Troj/Clagger-D has been seen sent out in spam with subject lines including "ERROR:YOUR CREDIT CARD OVERDRAFT EXCEED!" and "The Overdaft Exceed" and with attachment filenames including file1185.exe Troj/Clagger-D is a downloader Trojan for the Windows platform.

Troj/Clagger-D attempts to set the following registry entry to bypass the Windows firewall:

HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\
firewallpolicy\standardprofile\authorizedapplications\list\
<path to Trojan
<path to Trojan>:*:enabled:EarthWormJimm

Troj/Clagger-D attempts to download a file to the Windows folder from a remote website and execute it. This file is currently detected as Troj/CashGrab-L.

Troj/Clagger-D has been seen sent out in spam with subject lines including "ERROR:YOUR CREDIT CARD OVERDRAFT EXCEED!" and "The Overdaft Exceed" and with attachment filenames including file1185.exe

RSS|Atom
Get reports about the latest virus and spyware threats delivered to your computer