Solved! Use HRA33.DLL (Trojan Buzus) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

HRA33.DLL – Trojan Buzus removal

FileMD5Virus Alias
HRA33.DLL cd8f7c18d965a946b28c79460d28f7d0 Trojan Buzus
HRA33.DLL cd8f7c18d965a946b28c79460d28f7d0 Trojan Generic
HRA33.DLL cd8f7c18d965a946b28c79460d28f7d0 Backdoor RBot
HRA33.DLL cd8f7c18d965a946b28c79460d28f7d0 Trojan Agent
HRA33.DLL cd8f7c18d965a946b28c79460d28f7d0 Backdoor IRCBot
HRA33.DLL cd8f7c18d965a946b28c79460d28f7d0 Trojan Scar

HRA33.DLL size: 8704 bytes
HRA33.DLL hash: CD8F7C18D965A946B28C79460D28F7D0

Created files:

%WinDir%\hktvge.exe
%SysDir%\hra33.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Mnopqr Tuvawxyab Def\Type: 10010000
HKLM\System\CurrentControlSet\Services\Mnopqr Tuvawxyab Def\Start: 02000000
HKLM\System\CurrentControlSet\Services\Mnopqr Tuvawxyab Def\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\Mnopqr Tuvawxyab Def\DisplayName: Mnopqr Tuvawxyab Defghijk Mnop
HKLM\System\CurrentControlSet\Services\Mnopqr Tuvawxyab Def\ImagePath: %WinDir%\hktvge.exe
HKLM\System\CurrentControlSet\Services\Mnopqr Tuvawxyab Def\Description: Mnopqrst Vwxayabcde Ghijklm Opqrstuv Xya

Detected by UnHackMe:

HRA33.DLL
Default location: %SYSDIR%\HRA33.DLL

Dropper information:
MD5: 9e8d7d6f89b6347480d608f0d603764c
File size: 92848 bytes

Leave a Reply