Trojan.Bladabindi.B

By Sumo3000 in Trojans | 26 views
Rate it:
1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...
More... More

Trojan.Bladabindi.B Description

Trojan.Bladabindi.B is a Trojan that targets Windows computers. Trojan.Bladabindi.B is a security risk to your computer system and privacy. Trojan.Bladabindi.B may access the compromised PC through security holes, or may invade the machine via removable devices like an infected USB drives. Trojan.Bladabindi.B can result in computer functionality issues and incorporate your computer into numerous illicit actions. Trojan.Bladabindi.B can disguise itself on the affected PC and attempt to bypass the detection and elimination of anti-virus programs by using the original names of genuine Windows files. Trojan.Bladabindi.B can harm the vulnerable PC, use personal accounts or drop other malware infections. Trojan.Bladabindi.B can install Browser Helper Objects (BHOs), spy on the PC owner’s online behavior, steal passwords and access email accounts for spreading other security threats via spam emails using your personal email address.

Type: Trojans

How Can You Detect Trojan.Bladabindi.B?

Trojan.Bladabindi.B Removal Details

Trojan.Bladabindi.B has typically the following processes in memory:

  • usbnaw32.dll
  • %USERPROFILE%\trojan.exe
  • 5cd8f17f4086744065eb0992a09e05a2.exe
  • %USERPROFILE%\Local Settings\Temp\server.exe
  • 23730.exe
  • svchost.exe
  • c7192e982641757f14f66356bb4cf303.exe

Trojan.Bladabindi.B creates the following files in the system:

  • ! my picutre.scr

Trojan.Bladabindi.B creates the following registry entries:

  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “c7192e982641757f14f66356bb4cf303″ = “”C:\Documents and settings\Administrator\trojan.exe” ..”
  • HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run “[VALUE]” = “[MALWARE PATH AND FILE NAME]”
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run “[VALUE]” = “[MALWARE PATH AND FILE NAME]”
  • HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List “C:\Documents and Settings\Administrator\trojan.exe” = “C:\Documents and Settings\Administrator\trojan.exe:*:enabled:trojan.exe”

Important Article Disclaimer

ESG Support Center

This entry was last updated on 01/23/13 and posted on 10/5/12. You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.

Leave a Comment

Note: Abusive comments are not allowed. Please do not post comments regarding technical support issues. ESG customers that have issues with SpyHunter should open a customer support ticket.

*
To prove you're a person (not a spam script), type the security word shown in the picture. Click on the picture to hear an audio file of the word.
Click to hear an audio file of the anti-spam word

Home | SpyHunter Risk Assessment Model | Privacy Policy | End User License Agreement | Additional Terms and Conditions
Copyright 2003-2012. Enigma Software Group USA, LLC. All Rights Reserved.