Dragon Trojan Downloader
(Trojan.Win32.Genome.bdt)

by Saeid Bostanoust

Written in Visual Basic

Released in March 2008



Server
Dropped File:
c:\WINDOWS\system32\Spool_32.exe
Size: 28,674 bytes 

Added to Registry:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "spool32"
Data: C:\WINDOWS\system32\Spool_32.exe 




Tested on Windows XP
June 18, 2008

MegaSecurity