Sophos

Troj/Perda-J

Aliases
  • Trojan-Proxy.Win32.Agent.if
Category
Type
What to do
Prevalence low high

Summary

 
Affected operating systems Windows
Characteristics
  • Installs itself in the registry
Included in our products from March 2006 (4.03)
Protection available since 26 January 2006 23:40:04 (GMT)
Detected by All Sophos products

Action

More Information

Troj/Perda-J is a backdoor Trojan which allows a remote intruder to gain access and control over the computer.

Troj/Perda-J serves as a proxy, allowing remote users the ability to route HTTP traffic through the infected computer. The Trojan may also accept commands from remote users.

The following registry entry is created to run Troj/Perda-J on startup:

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
nethost.exe
<pathname of the Trojan executable>

RSS|Atom
Get reports about the latest virus and spyware threats delivered to your computer