Sophos

Troj/Sysdel-B

Category
Type
What to do
Prevalence low high

Summary

 
Affected operating systems Windows
Included in our products from April 2008 (4.28)
Protection available since 13 February 2008 07:48:01 (GMT)
Detected by All Sophos products

Action

Please follow the instructions for removing Trojans.

Troj/Sysdel-B deletes key system files and may render the infected computer unusable.

The deleted files will need to be restored from a known clean backup.

More Information

Troj/Sysdel-B is a Trojan for the Windows platform.

When run, Troj/Sysdel-B will to delete the following important system files:

C:\ntldr
C:\boot.ini
C:\ntdetect.com
C:\autoexec.bat
C:\config.sys
C:\command.com
C:\io.sys
C:\msdos.sys
<Windows>\winsock.dll
<Windows>\hal.dll
<Windows>\kernel32.dll
<Windows>\user32.dll
<Windows>\ntoskrnl.exe
<Windows>\msvcrt.dll
<Windows>\msvcrt20.dll
<Windows>\msvcrt40.dll
<Windows>\msvcrtd.dll
<Windows>\win.com

In some instances, Troj/Sysdel-B will attempt to delete the entire <Windows> folder.

RSS|Atom
Get reports about the latest virus and spyware threats delivered to your computer