Will Blake> Just for accuracy this is actually "iframedollars"
Presumably that's what they're trying to refer to. (I can find no record of 'infradollars' ever having existed.)
However, although CWS.IframeDollars were a big DR installer (they were affiliate 1030), the exploit group associated most strongly with DollarRevenue was CWS.VladZone. They went as far as hosting their worse installs at VladZone servers under the DR name.
Alan Donaly> I don't recall meeting this one
You would have met the things it then went on to install. Whilst DR did have their own spyware, their primary tactic was installing other people's for cash.
> On the other hand trojans you never really get rid of you have to reinstall.
And DR have bundled exactly those kinds of trojans (rootkits etc.).
In any case, unless you're a security expert (and sometimes even then) you're not going to be able to detect the stealthier malware, so you must assume the machine is still compromised and re-install.