Solved! Use ATPDRAW.EXE (Trojan OnLineGames) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

ATPDRAW.EXE – Trojan OnLineGames removal

File MD5 Virus Alias
ATPDRAW.EXE 3a74e914d1794dd324eda7f0a9cafa70 Trojan OnLineGames
ATPDRAW.EXE 3a74e914d1794dd324eda7f0a9cafa70 Trojan Eldorado
ATPDRAW.EXE 3a74e914d1794dd324eda7f0a9cafa70 Trojan Downloader
ATPDRAW.EXE 3a74e914d1794dd324eda7f0a9cafa70 Trojan Krap
ATPDRAW.EXE 3a74e914d1794dd324eda7f0a9cafa70 Trojan Agent
ATPDRAW.EXE 3a74e914d1794dd324eda7f0a9cafa70 Backdoor Zegost

ATPDRAW.EXE size: 49152 bytes
ATPDRAW.EXE hash: 3A74E914D1794DD324EDA7F0A9CAFA70

Created files:

%WinDir%\ATPDraw.EXE

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\SuperProServer\ConnectGroup: wo
HKLM\System\CurrentControlSet\Services\SuperProServer\MarkTime: 2014-12-10 08:35
HKLM\System\CurrentControlSet\Services\SuperProServer\Type: 10010000
HKLM\System\CurrentControlSet\Services\SuperProServer\Start: 02000000
HKLM\System\CurrentControlSet\Services\SuperProServer\DisplayName: SuperProServer
HKLM\System\CurrentControlSet\Services\SuperProServer\ImagePath: %WinDir%\ATPDraw.EXE

Detected by UnHackMe:

ATPDRAW.EXE
Default location: %WinDir%\ATPDRAW.EXE

Dropper information:
MD5: 3a74e914d1794dd324eda7f0a9cafa70
File size: 49152 bytes

Leave a Reply