HBYY.DLL – Trojan OnLineGames

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

HBYY.DLL – Trojan OnLineGames removal

File MD5 Virus Alias
HBYY.DLL d43be2f7791d9c45a6607856eb0c3fcd Trojan OnLineGames
HBYY.DLL d43be2f7791d9c45a6607856eb0c3fcd Trojan Xema
HBYY.DLL d43be2f7791d9c45a6607856eb0c3fcd Trojan Eldorado
HBYY.DLL d43be2f7791d9c45a6607856eb0c3fcd Trojan Downloader
HBYY.DLL d43be2f7791d9c45a6607856eb0c3fcd Trojan CI
HBYY.DLL d43be2f7791d9c45a6607856eb0c3fcd Trojan Agent

HBYY.DLL size: 24576 bytes
HBYY.DLL hash: D43BE2F7791D9C45A6607856EB0C3FCD

Created files:

%SysDir%\drivers\HBKernel32.sys
%SysDir%\HBYY.dll
%SysDir%\System.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\HBService32: System.exe
HKLM\System\CurrentControlSet\Services\HBKernel32\Type: 01000000
HKLM\System\CurrentControlSet\Services\HBKernel32\DisplayName: HBKernel32 Driver
HKLM\System\CurrentControlSet\Services\HBKernel32\ImagePath: %WinDir%\System32\drivers\HBKernel32.sys

Detected by UnHackMe:

HBYY.DLL
Default location: %SYSDIR%\HBYY.DLL

Dropper information:
MD5: 2b9b5bbb19717ed8a1b8e9b3bf1d71cd
File size: 17153 bytes

Leave a Reply