Home / malwarePDF  

PWS:Win32/Lolyda.V


First posted on 04 February 2009.
Source: SecurityHome

Aliases :

PWS:Win32/Lolyda.V is also known as Also Known As:Win32/LolydaDllA!generic (CA), Win32/Lolyda.FH (CA), Win32/PSW.OnLineGames.NRI (ESET), Trojan.Win32.SmallGame.cb (Kaspersky), Trojan-GameThief.Win32.OnLineGames.ubpb (Kaspersky), Trojan.Win32.SmallGame.bp (Kaspersky), PWS-OnlineGames.co (McAfee), Trj/Lineage.BZE (Panda), Infostealer.Onlinegame (Symantec).

Explanation :

PWS:Win32/Lolyda.V is the detection for a DLL file that is a component of the PWS:Win32/Lolyda family, which steals account information from some popular online games and sends it to a remote server.

Symptoms
There are no common symptoms associated with this threat. Alert notifications from installed antivirus software may be the only symptom(s).

PWS:Win32/Lolyda.V is the detection for a DLL file that is a component of the PWS:Win32/Lolyda family, which steals account information from some popular online games and sends it to a remote server. This particular Lolyda variant collects the following information:

  • Server name
  • Account name
  • Password
  • Game level
  • PWS:Win32/Lolyda.V then sends the gathered information to the following web sites:
  • xiayula88.com
  • xk8aii3.com


  • Analysis by Jaime Wong

    Last update 04 February 2009

     

    TOP