Sophos

Troj/Agent-GEP

Aliases
  • Trojan.Win32.Agent.bxj
  • Downloader-BEW
  • Backdoor:Win32/Zonebac.D
Category
Type
What to do
Prevalence low high

Summary

 
Affected operating systems Windows
Characteristics
  • Installs itself in the registry
Included in our products from December 2007 (4.24)
Protection available since 23 October 2007 02:25:00 (GMT)
Last updated 24 October 2007 18:24:39 (GMT)
Detected by All Sophos products

Action

More Information

Troj/Agent-GEP is a backdoor Trojan for the windows platform.

Troj/Agent-GEP will attempt to communicate with a remote server via HTTP.

Troj/Agent-GEP will create the following file:
<Temp>\<random number>.dat

Troj/Agent-GEP will create several entries under the following registry entries:
Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains
Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\2
Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\

RSS|Atom
Get reports about the latest virus and spyware threats delivered to your computer