W32/Pamere.DC is a clicker Trojan that will infect Windows systems.

The trojan will arrive as a downloaded file upon clicking the link in a spammed email.

Upon execution, the trojan loads itself to memory and tries to connect to any one of the following web sites:


http://www.qhatcar.com/080324/cpccpmqian.asp
http://www.liverdiseasesymtoms.com
http://www.mydebtpay.com/
http://www.cosmesurge.com/StyleSheets/cosmesurge.css
http://www.permroller.com

The trojan opens random TCP ports on the infected system and listens for commands from a remote user. It also tries to send spam mails using the mail accounts configured on the infected system.

More information can be found at this Proland Software page.