Sophos

Troj/PcClien-WI

Aliases
  • Backdoor.Win32.PcClient.wi
  • BKDR_PCCLIENT.RF
Category
Type
What to do
Prevalence low high

Summary

 
Affected operating systems Windows
Characteristics
  • Drops more malware
Included in our products from January 2007 (4.13)
Protection available since 24 November 2006 12:25:05 (GMT)
Last updated 28 November 2006 20:06:15 (GMT)
Detected by All Sophos products

Action

More Information

Troj/PcClien-WI is a Trojan for the Windows platform.

Troj/PcClien-WI includes functionality to access the internet and communicate with a remote server via HTTP.

Troj/PcClien-WI includes stealth code in order to hide files and processes.

When Troj/PcClien-WI is installed the following files are created:

<System>\drivers\<random>.sys
<System>\<random>.d1l

The file <random>.d1l is also detected as Troj/PcClien-WI and the file <random>.sys is detected as Troj/RKPort-Fam.

RSS|Atom
Get reports about the latest virus and spyware threats delivered to your computer