TGA Web-Download
(Trojan-Downloader.Win32.Small.djs)

by TGA

Written in Delphi

Released in July 2006

Made in Brazil

more versions


Server:
dropped file:
c:\WINDOWS\Update.exe
size: 24,772 bytes 

startup:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "WindowsUpdate"
data: C:\WINDOWS\Update.exe 



tested on Windows XP
July 30, 2006

MegaSecurity