Troj/Padodor-Y

Category: Viruses and Spyware
Type: Trojan
Prevalence: Small Number of Reports

Download Download our free Virus Removal Tool - Find and remove threats your antivirus missed

Troj/Padodor-Y is a multi-component proxy Trojan which allows unauthorised remote access to the computer via a network.

The main dropper component the file boot.sys in the root folder and a randomly-named DLL in the Windows system folder. Boot.sys drops another randomly-named DLL in the Windows system folder and the legitimate network driver ndisrd.sys in the <Windows system folder>\drivers folder.

One of the DLL components contains the proxy Trojan functionality which it attempts to inject into the explorer process.

download Try Sophos products for free
Download now