498773D2.SYS – Trojan OnLineGames

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

498773D2.SYS – Trojan OnLineGames removal

FileMD5Virus Alias
498773D2.SYS d7fbf40a03e0f11251252acde493b2fc Trojan OnLineGames
498773D2.SYS d7fbf40a03e0f11251252acde493b2fc Trojan SuspiciousFile
498773D2.SYS d7fbf40a03e0f11251252acde493b2fc Trojan Eldorado
498773D2.SYS d7fbf40a03e0f11251252acde493b2fc Trojan Graftor
498773D2.SYS d7fbf40a03e0f11251252acde493b2fc Trojan Agent
498773D2.SYS d7fbf40a03e0f11251252acde493b2fc Trojan Small

498773D2.SYS size: 22240 bytes
498773D2.SYS hash: D7FBF40A03E0F11251252ACDE493B2FC

Created files:

%SysDir%\drivers\498773d2.sys
%SysDir%\kakubi.dll
%TEMP%\if3yfw7.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\498773d2\Type: 01000000
HKLM\System\CurrentControlSet\Services\498773d2\Start: 01000000
HKLM\System\CurrentControlSet\Services\498773d2\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\498773d2\DisplayName: 498773d2
HKLM\System\CurrentControlSet\Services\498773d2\ImagePath: \??\%WinDir%\System32\drivers\498773d2.sys

Detected by UnHackMe:

498773D2.SYS
Default location: %SYSDIR%\DRIVERS\498773D2.SYS

Dropper information:
MD5: 0c76e200cb4c3edd51abf44e47076848
File size: 215040 bytes

Leave a Reply