Trojan Banker – yesgameSupporter.exe – bddf43a416e56f867f239435aaaef285

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Banker
Also known as: Trojan Generic
SHA256: 276f7ac07d9c0ebbfe51833f5c2e803c960067659d316c5ea1cd959f07e88f4f
SHA1: f4bf828997c643a4462309f63e812b6672d36455
MD5: bddf43a416e56f867f239435aaaef285
File size: 300088 bytes

Created files:

%Program Files%\yesgame Supporter\yesgameSupporter.exe – Trojan Banker
%Program Files%\yesgame Supporter\yesgameSupporterh.dll – Trojan Banker
%Temp%\44742.bat – Trojan Banker
%Temp%\BDDF43A416E56F867F239435AAAEF285.EXE – Trojan Banker

Trojan Banker created autostart registry keys:

HKLM\Software\Classes\CLSID\{653CE4DF-3649-4D27-B56E-6400C107D73F}\InprocServer32 : C:\PROGRA~1\YESGAM~1\YESGAM~1.DLL
HKLM\Software\Classes\CLSID\{BCAB491A-3E0A-4718-93B9-429D457A4711}\InprocServer32 : C:\PROGRA~1\YESGAM~1\YESGAM~1.DLL
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\yesgame Supporter: “%Program Files%\yesgame Supporter\yesgameSupporter.exe”

Leave a Reply