I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
Trojan OnLineGames
Also known as: Trojan Graftor, Backdoor PcClien
SHA256: 0b336d54594bc6561b22d24ac408e0735c5b97740d8ec6e6dc05e1c511744950
SHA1: 1213f8bc18ce19aa344054aa9f475fc6b0a22fe4
MD5: 8831d74aa8bdb3c907e87b7c8c3ed1ff
File size: 49664 bytes
Created files:
%SysDir%\dllcache\ksuser.dll – Trojan OnLineGames
%SysDir%\sysapp17.dll – Trojan OnLineGames
%SysDir%\yuksuser.dll – Trojan OnLineGames
%SysDir%\yumidimap.dll – Trojan OnLineGames
Trojan OnLineGames created autostart registry keys:
HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0200804\Ime File: CHINASOUGOU.IME
HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0200804\Layout Text: ????(???)???
HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0200804\Layout File: kbdus.dll
HKLM\System\CurrentControlSet\Services\cryptsvc\Start: 04000000