Home Malware Programs Trojans Troj/Oficla-B

Troj/Oficla-B

Posted: February 10, 2010

Troj/Oficla-B is a malicious spyware Trojan which steals confidential data regarding online banking. Troj/Oficla-B uses browser security holes to enter the compromised computer and may come bundled with other malicious applications. Once active, Troj/Oficla-B produces a fake web browser window urging the user to fill in private banking data. Troj/Oficla-B poses a severe security threat and should be removed from the computer immediately.

Aliases

Trojan.Win32.Oficla (Ikarus)

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %System%\lfrt.njo
    2 %Temp%\1.tmp

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
Loading...