Summary

Summary
Action
More Information
| Affected operating systems | Windows |
|---|---|
| Characteristics |
|
| Protection available since | 9 September 2005 08:57:34 (GMT) |
| Detected by | All Sophos products |
- Endpoint Security and Control 9.0
- Small business solutions 4.0
Action

Summary
Action
More Information
Please follow the instructions for removing Trojans.
More Information
Troj/Lohav-T is a backdoor Trojan for the Windows platform.
When the run the Trojan attempts to copy itself to the Windows system folder as \realupd32.exe and create the following registry entry so as to auto-start:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
RealPlayerUpdater
<System>\realupd32.exe
The Trojan will attempt to download and execute files from a remote website.
