Wednesday, January 28, 2009

BrowserPal BHO

Click here to remove BrowserPal malware
BrowserPal description:
BrowserPal Category:BHO
As this information is entered by the user, it is captured by the BHO (Browser Helper Object) and
sent back to the attacker.
Typically, keyloggers of this type will send the stolen information back to the attacker via email
or HTTP POST, which can appear suspicious.

Detection BrowserPal :

BrowserPal Files:
[%SYSTEM%]\blckbho.dll
[%SYSTEM%]\bptlb.dll
[%WINDOWS%]\system\blckbho.dll
[%WINDOWS%]\system\bptlb.dll
[%SYSTEM%]\blckbho.dll
[%SYSTEM%]\bptlb.dll
[%WINDOWS%]\system\blckbho.dll
[%WINDOWS%]\system\bptlb.dll

BrowserPal Registry Keys:
HKEY_CLASSES_ROOT\clsid\{5f5564ac-de7a-4dcd-9296-32e71a35dcb7}
HKEY_CLASSES_ROOT\clsid\{d34f641f-5210-4eb0-8ed5-9179f47e15b7}
HKEY_CLASSES_ROOT\software\microsoft\windows\currentversion\explorer\browser helper objects\{5f5564ac-de7a-4dcd-9296-32e71a35dcb7}
HKEY_CLASSES_ROOT\software\microsoft\windows\currentversion\explorer\browser helper objects\{d34f641f-5210-4eb0-8ed5-9179f47e15b7}
HKEY_CURRENT_USER\software\browser pal
HKEY_LOCAL_MACHINE\software\browser pal
HKEY_LOCAL_MACHINE\software\classes\clsid\{5f5564ac-de7a-4dcd-9296-32e71a35dcb7}
HKEY_LOCAL_MACHINE\software\classes\clsid\{d34f641f-5210-4eb0-8ed5-9179f47e15b7}
HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\extensions\{07b7f771-1b8e-4b7b-823e-ffac1732aa9f}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{5f5564ac-de7a-4dcd-9296-32e71a35dcb7}
HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{d34f641f-5210-4eb0-8ed5-9179f47e15b7}

Removing BrowserPal:

you can run trial version of ExterminateIt, or remove BrowserPal manually.


To completely manually remove BrowserPal malware from your computer, you need to delete the Windows registry keys and registry values, the files and folders associated with BrowserPal.


Also Be Aware of the Following Threats:
Remove Delf.pb Trojan
THCK.TBC Trojan Information
Remove Bienvenido Adware
SillyDl.DJM Trojan Symptoms
Remove Bancos.FVO Trojan

0 Comments:

Post a Comment

Subscribe to Post Comments [Atom]

<< Home