Home Malware Programs Trojans Lodear.d

Lodear.d

Posted: March 28, 2006

Lodear.d is a rapidly spreading trojan, which is distributed by e-mail in messages with attached Zip archives containing infected executables. Once the user unpacks and runs such a file, the trojan shows certain image, installs itself to the computer and runs a payload. It contacts predetermined web sites, downloads malicious applications and unsolicited softwares and executes them. Lodear.d automatically runs on every Windows startup.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 1.exe
    2 anthonye.zip
    3 anti_troj.exe
    4 cybil.zip
    5 edmond.zip
    6 george.zip
    7 joane.zip
    8 susanna.zip

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}HKEY_CURRENT_USERSoftwareMicrosoftWindowsCurrentVersionRunanti_trojHKEY_CURRENT_USERSoftwarefirstrrrunHKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRunanti_troj
Loading...