Troj/Umbriel-A is a backdoor Trojan for the Windows platform.
Allows a malicious user remote access to an infected computer.
Records keystrokes to the file ubrlg.sys in the Windows system folder and scans various registry entries and configuration files to find passwords.
Stolen information may be sent by email to a predetermined address.
Copies itself to the Windows system folder as ubr2.exe, and creates the two helper DLLs hcsrss.dll and icsrss.dll.
Sets the following registry entry: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Winlogon\Shell = Explorer.exe ubr2.exe.
The Trojan also edits system.ini in the Windows system folder.
Automatic removal:
Use RegRun Startup Optimizer to remove it from startup.
Removal: ubr2.exe is removed by RegRun.
Read more... Removal instructions...
UnHackMe - Rootkit/Malware killer
Also recommended software:
RegRun Security Suite Platinum - removal and protection.
UnHackMe is a part of RegRun Security Suite Platinum.
RegRun - User's Choice
Vista Programs - full info...
What is hidden in MSDN?
.NET Secrets Revealed
Why software developers prefer Win32.FreeTechSecrets.com?
All Unix Manuals in Alphabetical Order
C# controls for .NET in 3 simple steps.
Constantly updated. Last update:
November 16 2009
Interesting information about Vista programs...
Need consultation?
Would you like to add your opinion?