Solved! Use HRA33.DLL (Trojan Buzus) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

HRA33.DLL – Trojan Buzus removal

File MD5 Virus Alias
HRA33.DLL 07ceb01332d2f492c71e73bff09a91fb Trojan Buzus
HRA33.DLL 07ceb01332d2f492c71e73bff09a91fb Trojan Generic
HRA33.DLL 07ceb01332d2f492c71e73bff09a91fb Backdoor RBot
HRA33.DLL 07ceb01332d2f492c71e73bff09a91fb Trojan Agent
HRA33.DLL 07ceb01332d2f492c71e73bff09a91fb Backdoor IRCBot
HRA33.DLL 07ceb01332d2f492c71e73bff09a91fb Trojan Scar

HRA33.DLL size: 8704 bytes
HRA33.DLL hash: 07CEB01332D2F492C71E73BFF09A91FB

Created files:

%WinDir%\dknjgw.exe
%SysDir%\hra33.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Defghi Klmnopqr Tuv\Type: 10010000
HKLM\System\CurrentControlSet\Services\Defghi Klmnopqr Tuv\Start: 02000000
HKLM\System\CurrentControlSet\Services\Defghi Klmnopqr Tuv\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\Defghi Klmnopqr Tuv\DisplayName: Defghi Klmnopqr Tuvwxyab Defg
HKLM\System\CurrentControlSet\Services\Defghi Klmnopqr Tuv\ImagePath: %WinDir%\dknjgw.exe
HKLM\System\CurrentControlSet\Services\Defghi Klmnopqr Tuv\Description: Defghijk Mnopqrstu Wxyabcd Fghijklm Opq

Detected by UnHackMe:

HRA33.DLL
Default location: %SYSDIR%\HRA33.DLL

Dropper information:
MD5: 58d31c5cbc4470c9d9412a1b7f96c9af
File size: 26624 bytes

Leave a Reply