Home Malware Programs Spyware Infostealer.Ebod

Infostealer.Ebod

Posted: September 7, 2009

Infostealer.Ebod is a Trojan horse that enters your computer attached to a legitimate Flash installer. Once active, Infostealer.Ebod then proceeds to steal your logins, bank information and Media Access Control addresses, as well as search engine results and browser history. Infostealer.Ebod then transmits this information to a remote location.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %System%\smc.exe
    2 %Temp%\smc.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\"smc" = "%System%\smc.exe"
Loading...