Skip to main content
Skip to main content
Microsoft Security Intelligence
Published Feb 05, 2008 | Updated Apr 16, 2011

WinNT/Ldpinch

Detected by Microsoft Defender Antivirus

Aliases: No associated aliases

Summary

WinNT/Ldpinch is a rootkit driver that is dropped by some variants of Win32/Ldpinch.
 
Win32/Ldpinch is a family of password-stealing trojans. This trojan gathers private user data such as passwords from the host computer and sends the data to the attacker at a preset e-mail address. The Win32/Ldpinch trojans use their own Simple Mail Transfer Protocol (SMTP) engine or a web-based proxy for sending the e-mail, thus copies of the sent e-mail will not appear in the affected user's e-mail client.
Manual removal is not recommended for this threat. Use the Microsoft Malicious Software Removal Tool, Microsoft Security Essentials, Microsoft Safety Scanner, or another up-to-date scanning and removal tool to detect and remove this threat and other unwanted software from your computer. For more information on Microsoft security products, see http://www.microsoft.com/protect/products/computer/default.mspx.
Follow us