Home / malwarePDF  


First posted on 18 June 2009.
Source: SecurityHome

Aliases :

PWS:Win32/Yaludle.A is also known as Also Known As:Win32/Yaludle.A (CA), Trojan.Win32.Pakes.kuh (Kaspersky), Troj/PWS-AUD (Sophos), TrojanSpy.Yaludle.A (VirusBuster), Win32/Spy.Silentbanker.AC (ESET), :Trj/Silentbanker.B (Panda), Trojan.Silentbanker (Symantec), Trojan.PWS.Yaludle.A (BitDefender), Spy-Agent.gen (McAfee).

Explanation :

PWS:Win32/Yaludle.A is a generic detection for malware with encrypted strings that attempt to gather sensitive information from the system.

There are no common symptoms associated with this threat. Alert notifications from installed antivirus software may be the only symptom(s).

PWS:Win32/Yaludle.A is a generic detection for malware with encrypted strings that attempt to gather sensitive information from the system. Once PWS:Win32/Yaludle.A has executed, it drops a DLL component and a configuration file that contains some installation details. Its dropped files and installation details may vary from sample to sample. It is capable of stealing information, including user names and passwords, by sniffing network traffic.

Analysis by Francis Allan Tan Seng

Last update 18 June 2009