Home Malware Programs Trojans Trojan-PSW.Win32.Eruwbi.lp

Trojan-PSW.Win32.Eruwbi.lp

Posted: May 24, 2010

Trojan-PSW.Win32.Eruwbi.lp (aka Mal/Generic-L) is a Trojan which comes packed with a keylogger program. The Keylogger can capture all user keystrokes, including confidential details such usernames, passwords and credit card numbers. Remove this parasite immediately once detcted before it wreaks havoc in your life.

File System Modifications

  • The following files were created in the system:
    # File Name
    1 %CommonPrograms%\Internet Explorer.lnk
    2 %CommonStartMenu%\Internet Explorer.lnk
    3 %StartMenu%\Internet Explorer.lnk
    4 %System%\tbhdz.ico

Registry Modifications

  • The following newly produced Registry Values are:
    HKEY..\..\..\..{Subkeys}[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1f4de370-d627-11d1-ba4f-00a0c91eedba}\ShellFolder][HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{1f4de370-d627-11d1-ba4f-00a0c91eedba}][HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\ShellFolder][HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\shell][HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e17d4fc0-5564-11d1-83f2-00a0c90dc849}\ShellFolder][HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{e17d4fc0-5564-11d1-83f2-00a0c90dc849}]
Loading...