Sophos

Troj/RKFu-B

Aliases
  • Rootkit.Win32.Agent.x
  • Hacktool
Category
Type
What to do
Prevalence low high

Summary

 
Affected operating systems Windows
Protection available since 3 October 2005 22:01:35 (GMT)
Detected by All Sophos products
  • Free virus, spyware, and adware scan
  • Test your existing anti-virus protection
  • Find threats your anti-virus missed

Action

More Information

Troj/RKFu-B is a rootkit Trojan.

Troj/RKFu-B may list hidden processes or hide specific processes if instructed to do so.

Troj/RKFu-B drops a file to the same folder as itself called SMonitor.sys, also detected as Troj/RKFu-B. It uses this file to hide processes, providing stealthing by direct kernel object manipulation (DKOM).

RSS|Atom
Get reports about the latest virus and spyware threats delivered to your computer