Sophos

Troj/DwnLdr-HAQ

Category
Type
What to do
Prevalence low high

Summary

 
Affected operating systems Windows
Included in our products from April 2008 (4.28)
Protection available since 6 February 2008 09:17:26 (GMT)
Last updated 12 February 2008 19:46:18 (GMT)
Detected by All Sophos products

Action

More Information

Troj/DwnLdr-HAQ is a Trojan for Windows platform.

Troj/DwnLdr-HAQ includes functionality to access the internet and communicate with a remote server via HTTP.

Troj/DwnLdr-HAQ includes functionality to download, install and run new software.

When first run Troj/DwnLdr-HAQ copies itself to
<Windows system folder>\<gridmgr>\.exe.

The file <RandomFileName> is registered as a COM object, creating registry entries under:
HKCR\CLSID\{FECCE700-8269-47FC-A0FA-98D658FEA055}

RSS|Atom
Get reports about the latest virus and spyware threats delivered to your computer