KSUSER.DLL – Trojan OnLineGames

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

KSUSER.DLL – Trojan OnLineGames removal

FileMD5Virus Alias
KSUSER.DLL fd65a4b62287f4bd1f75c4534dbc7ebd Trojan OnLineGames
KSUSER.DLL fd65a4b62287f4bd1f75c4534dbc7ebd Trojan Generic
KSUSER.DLL fd65a4b62287f4bd1f75c4534dbc7ebd Trojan Eldorado
KSUSER.DLL fd65a4b62287f4bd1f75c4534dbc7ebd Trojan Downloader
KSUSER.DLL fd65a4b62287f4bd1f75c4534dbc7ebd Trojan Agent

KSUSER.DLL size: 38912 bytes
KSUSER.DLL hash: FD65A4B62287F4BD1F75C4534DBC7EBD

Created files:

%SysDir%\asianlan8.dll
%SysDir%\dllcache\ksuser.dll
%SysDir%\yuksuser.dll
%SysDir%\yumidimap.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0200804\Ime File: CHINASOUGOU.IME
HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0200804\Layout Text: ???(???)
HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0200804\Layout File: kbdus.dll
HKLM\System\CurrentControlSet\Services\cryptsvc\Start: 04000000

Detected by UnHackMe:

KSUSER.DLL
Default location: %SYSDIR%\DLLCACHE\KSUSER.DLL

Dropper information:
MD5: ecb2c568fa487fefdb8031522157b5f9
File size: 22016 bytes

Leave a Reply