Troj/Bdoor-HO

Category: Viruses and Spyware
Type: Trojan
Prevalence: Small Number of Reports

Download Download our free Virus Removal Tool - Find and remove threats your antivirus missed

Troj/Bdoor-HO is a backdoor Trojan for the Windows platform.

When first run, Troj/Bdoor-HO will attempt to copy itself to C:\recycler\system.exe. The Trojan will set the following registry entries in an attempt to run itself on Windows login:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run
Recycle Bin Handler 2005
C:\recycler\system.exe

Troj/Bdoor-HO will attempt to connect to an IRC channel and await commands from a remote user. Infected computers can then be used to perform several tasks including:

record keystrokes
gather filesystem information
update itself
download arbitrary files
execute arbitrary files

The Trojan will also attempt to modify Windows XP Firewall settings to allow itself access to a specified port.

download Try Sophos products for free
Download now