KSUSER.DLL – Trojan OnLineGames

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

KSUSER.DLL – Trojan OnLineGames removal

FileMD5Virus Alias
KSUSER.DLL 6afa3c43d22a38b2da9df66f65e982ef Trojan OnLineGames
KSUSER.DLL 6afa3c43d22a38b2da9df66f65e982ef Trojan Generic
KSUSER.DLL 6afa3c43d22a38b2da9df66f65e982ef Trojan Eldorado
KSUSER.DLL 6afa3c43d22a38b2da9df66f65e982ef Trojan Downloader
KSUSER.DLL 6afa3c43d22a38b2da9df66f65e982ef Trojan Agent

KSUSER.DLL size: 38912 bytes
KSUSER.DLL hash: 6AFA3C43D22A38B2DA9DF66F65E982EF

Created files:

%SysDir%\asianlan8.dll
%SysDir%\dllcache\ksuser.dll
%SysDir%\yuksuser.dll
%SysDir%\yumidimap.dll
%TEMP%\dou.exe
%TEMP%\tlmf.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0200804\Ime File: CHINASOUGOU.IME
HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0200804\Layout Text: ???(???)
HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0200804\Layout File: kbdus.dll
HKLM\System\CurrentControlSet\Services\cryptsvc\Start: 04000000

Detected by UnHackMe:

KSUSER.DLL
Default location: %SYSDIR%\DLLCACHE\KSUSER.DLL

Dropper information:
MD5: a50a5bda256d76357bb39886b3093b81
File size: 272384 bytes

Leave a Reply