Home Malware Programs Trojans Lodear.b

Lodear.b

Posted: March 28, 2006

Lodear.b is a trojan distributed by e-mail in messages with attached ZIP archives containing infected executables. Once the user unpacks and runs such executable, the trojan secretly installs itself to the computer and runs a payload. It contacts predetermined web sites, downloads potentially harmful arbitrary files and executes them. Lodear.b automatically runs on every Windows startup.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 1.exe
    2 hleader_dll.dll
    3 hloader_exe.exe
    4 text5546.exe

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRunauto__hloader__keyHKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRunauto__hloader__key
Loading...