Name: AdClicker-S

Risk Assessment

- Home Users: Low

- Corporate Users: Low

Date Discovered: 7/15/2003

Date Added: 8/5/2003

Origin: Unknown

Length: 3,056 bytes

Type: Trojan

SubType: Win32

DAT Required: 4279

Virus Characteristics

This trojan is designed to generate "clicks", and likely revenue, for the author. It does this by connecting to a porn website and two additional IP addresses. At the time of writing, one of these is no longer available.
Upon being run, the trojan very briefly creates a batch file in the Windows Temp directory, to delete itself. There is indication that the file also tries to create a registry key to run itself again on startup, but this did not function in testing.
