I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
Trojan Banker
Also known as: Trojan Generic
SHA256: 276f7ac07d9c0ebbfe51833f5c2e803c960067659d316c5ea1cd959f07e88f4f
SHA1: f4bf828997c643a4462309f63e812b6672d36455
MD5: bddf43a416e56f867f239435aaaef285
File size: 300088 bytes
Created files:
%Program Files%\yesgame Supporter\yesgameSupporter.exe – Trojan Banker
%Program Files%\yesgame Supporter\yesgameSupporterh.dll – Trojan Banker
%Temp%\44742.bat – Trojan Banker
%Temp%\BDDF43A416E56F867F239435AAAEF285.EXE – Trojan Banker
Trojan Banker created autostart registry keys:
HKLM\Software\Classes\CLSID\{653CE4DF-3649-4D27-B56E-6400C107D73F}\InprocServer32 : C:\PROGRA~1\YESGAM~1\YESGAM~1.DLL
HKLM\Software\Classes\CLSID\{BCAB491A-3E0A-4718-93B9-429D457A4711}\InprocServer32 : C:\PROGRA~1\YESGAM~1\YESGAM~1.DLL
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\yesgame Supporter: “%Program Files%\yesgame Supporter\yesgameSupporter.exe”