Solved! Use HRA33.DLL (Trojan Buzus) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

HRA33.DLL – Trojan Buzus removal

FileMD5Virus Alias
HRA33.DLL cd8f7c18d965a946b28c79460d28f7d0 Trojan Buzus
HRA33.DLL cd8f7c18d965a946b28c79460d28f7d0 Trojan Generic
HRA33.DLL cd8f7c18d965a946b28c79460d28f7d0 Backdoor RBot
HRA33.DLL cd8f7c18d965a946b28c79460d28f7d0 Trojan Agent
HRA33.DLL cd8f7c18d965a946b28c79460d28f7d0 Backdoor IRCBot
HRA33.DLL cd8f7c18d965a946b28c79460d28f7d0 Trojan Scar

HRA33.DLL size: 8704 bytes
HRA33.DLL hash: CD8F7C18D965A946B28C79460D28F7D0

Created files:

%SysDir%\hra33.dll
%WinDir%\vmnhmw.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Defghi Klmnaopqr Tuv\Type: 10010000
HKLM\System\CurrentControlSet\Services\Defghi Klmnaopqr Tuv\Start: 02000000
HKLM\System\CurrentControlSet\Services\Defghi Klmnaopqr Tuv\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\Defghi Klmnaopqr Tuv\DisplayName: Defghi Klmnopaqr Tuvwxyab Defg
HKLM\System\CurrentControlSet\Services\Defghi Klmnaopqr Tuv\ImagePath: %WinDir%\vmnhmw.exe
HKLM\System\CurrentControlSet\Services\Defghi Klmnaopqr Tuv\Description: Defghijk Mnoapqrstu Wxyabcd Fghijklm Opq

Detected by UnHackMe:

HRA33.DLL
Default location: %SYSDIR%\HRA33.DLL

Dropper information:
MD5: b00304e9e0706130310c5ba808f8b9cc
File size: 43184 bytes

Leave a Reply