Sophos

Troj/Nuclear-J

Aliases
  • Backdoor.Win32.Delf.zn
  • BackDoor-CPY
  • trojan
Category
Type
What to do
Prevalence low high

Summary

 
Affected operating systems Windows
Included in our products from November 2005 (3.99)
Protection available since 16 September 2005 07:58:32 (GMT)
Detected by All Sophos products

Action

More Information

Troj/Nuclear-J is a backdoor Trojan for the Windows platform.

Troj/Nuclear-J may download and execute additional files.

When first run Troj/Nuclear-J copies itself to:

<Windows system folder>\Intenat.exe (also detected as Troj/Nuclear-J)
<Windows system folder>\Notepad.txt (also detected as Troj/Nuclear-J)

The following registry entry is created to run Intenat.exe on startup:

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Local Service
Intenat.exe

RSS|Atom
Get reports about the latest virus and spyware threats delivered to your computer