Summary

Summary
Action
More Information
| Affected operating systems | Windows |
|---|---|
| Characteristics |
|
| Included in our products from | October 2005 (3.98) |
| Protection available since | 31 August 2005 12:55:10 (GMT) |
| Detected by | All Sophos products |
Action

Summary
Action
More Information
Please follow the instructions for removing Trojans.
More Information
Troj/Bdoor-JG is a backdoor Trojan for the Windows platform.
When first run Troj/Bdoor-JG copies itself to <Windows>\<random filename>.exe and creates the file <Windows>\<random filename>.dll.
The dropped DLL component is detected as Troj/Bdoor-IR.
The following registry entry is created to run code exported by the Trojan library on startup:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad
Trayz
(F5B7D0BE-5f02-4211-96DB-386DFA244900)
