TF00294823.DLL – Adware bProtector

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

TF00294823.DLL – Adware bProtector removal

FileMD5Virus Alias
TF00294823.DLL 98bedc80ddd7444a7ec747df7bf1b2b6 Adware bProtector
TF00294823.DLL 98bedc80ddd7444a7ec747df7bf1b2b6 Trojan Generic
TF00294823.DLL 98bedc80ddd7444a7ec747df7bf1b2b6 Trojan Downloader

TF00294823.DLL size: 4131840 bytes
TF00294823.DLL hash: 98BEDC80DDD7444A7EC747DF7BF1B2B6

Created files:

%TEMP%\tf00294823.dll
%Common AppData%\WebGeniuos\WebGeniuos.dll
%Common AppData%\WebGeniuos\WebGeniuosSvc.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\148b9501\Type: 10000000
HKLM\System\CurrentControlSet\Services\148b9501\Start: 02000000
HKLM\System\CurrentControlSet\Services\148b9501\DisplayName: WebGeniuos
HKLM\System\CurrentControlSet\Services\148b9501\ImagePath: “%WinDir%\System32\rundll32.exe” “c:\docume~1\alluse~1\applic~1\webgen~1\WebGeniuosSvc.dll”,service

Detected by UnHackMe:

TF00294823.DLL
Default location: %TEMP%\TF00294823.DLL

Dropper information:
MD5: ca87fd8451cdad86f5e527cbce0d9e07
File size: 4804096 bytes

Leave a Reply