Sophos

Troj/NTRootK-BE

Aliases
  • Trojan-PSW.Win32.Small.bs
  • Win32/PSW.Small.NAJ
  • trojan
  • Infostealer.Snifula.B
  • TROJ_SMALL.EME
Category
Type
What to do
Prevalence low high

Summary

 
Affected operating systems Windows
Included in our products from March 2007 (4.15)
Protection available since 29 January 2007 23:30:25 (GMT)
Detected by All Sophos products

Action

More Information

Troj/NTRootK-BE is a kernel-mode driver rootkit for the Windows platform.

Troj/NTRootK-BE is capable of hiding information about certain processes, files and registry entries passed to it by another program, providing stealthing by patching the kernel service descriptor table.

RSS|Atom
Get reports about the latest virus and spyware threats delivered to your computer