Trojan.Win32.Llac.bdm

By ZulaZuza in Trojans | 7 views
Rate it:
1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...
More... More

Trojan.Win32.Llac.bdm Description

Trojan.Win32.Llac.bdm is a malicious computer trojan that will steal personal information from affected computer system and send it to a remote attacker. Trojan.Win32.Llac.bdm runs in the background and allows remote access to the infected computer. Trojan.Win32.Llac.bdm will download files to the compromised computer without a victim’s consent which will result in security threat. Trojan.Win32.Llac.bdm should be eliminated as soon as possible once detected on a PC system.

Type: Trojans

How Can You Detect Trojan.Win32.Llac.bdm?

Trojan.Win32.Llac.bdm Removal Details

Trojan.Win32.Llac.bdm has typically the following processes in memory:

  • %Windir%\winlogon.exe

Trojan.Win32.Llac.bdm creates the following files in the system:

  • %Temp%\UuU.uUu
  • %Temp%\XxX.xXx

Trojan.Win32.Llac.bdm creates the following registry entries:

  • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run] Policies = “%Windir%\winlogon.exe”
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
  • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run
  • HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run
  • HKLM = “%Windir%\winlogon.exe”
  • [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{S001NVLH-J6W8-1BRO-3A1D-001731EVU86L}] StubPath = “%Windir%\winlogon.exe”
  • HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{S001NVLH-J6W8-1BRO-3A1D-001731EVU86L}

Important Article Disclaimer

ESG Support Center

This entry was last updated on 04/26/11 and posted on 04/26/11. You can follow any responses to this entry through the RSS 2.0 feed. You can leave a response, or trackback from your own site.

Leave a Comment

Note: Abusive comments are not allowed. Please do not post comments regarding technical support issues. ESG customers that have issues with SpyHunter should open a customer support ticket.

*
To prove you're a person (not a spam script), type the security word shown in the picture. Click on the picture to hear an audio file of the word.
Click to hear an audio file of the anti-spam word

Home | SpyHunter Risk Assessment Model | Privacy Policy | End User License Agreement | Additional Terms and Conditions
Copyright 2003-2012. Enigma Software Group USA, LLC. All Rights Reserved.