Back Orifice 2000 or BO2K
trojan.
Information
about the Back Orifice 2000 or BO2k trojan:
Back Orifice 2000 or BO2K is a Win32 based
Trojan program. This trojan can affect Windows 95, Windows 98 and Windows
NT systems. It is a modified version of the original Back
Orifice trojan. Back Orifice 2000 trojan needs to be executed by the
user for it to be installed. Once executed by the user it will install
itself in such a way that it will be active all the time. Back Orifice
2000 adds an entry to the Windows Registry to achieve this. The presence
of Back Orifice 2000 installed in the computer will not be evident
to the affected user. Back Orifice 2000 is available in US and
International versions. The difference is the availability of the DES encryption
in the US version. The size of this trojan file is 139,264 bytes for
the US version and 114,688 bytes for the International version.
While you are connected to the internet,
if this program is running on your computer anyone from anywhere who has
got the Back Orifice Client program can sneak in to your computer without
your permission or knowledge. The remote hacker can get any information
from your computer including your passwords. He can execute programs in
your computer, copy files, read your email, plant other trojans or viruses,
monitor the keystrokes you type and a lot more. This will cause a serious
security risk to the affected user.
The version 1.0 of Back Orifice 2000 which
we tested has some bugs because of which it may not run properly on some
computers.
Back Orifice 2000 first appeared in July
1999.
Other
names of Back Orifice 2000 :
This worm is also known as BO2K,
Backdoor.BO2K.
Removing
Back Orifice 2000 trojan from your computer:
You can remove this trojan from your computer
by using Protector Plus antivirus software.
Click
here to download a 30 day Evaluation Copy of Protector Plus for your operating system
You can also remove this trojan manually
from your computer. Manual removal involves altering the Windows Registry.
You should not try it unless you know how to modify the Registry. You need
to modify the Windows Registry to remove the entries inserted by Back Orifice
2000. Then restart your computer and finally delete the trojan file whose
location was found in the Registry.
You will have to use an antivirus software
capable of detecting Back Orifice 2000 to ensure that you do not have this
file anywhere else in your hard disk. You can use Protector Plus for that
purpose.
|