Trojan OnLineGames – klif.sys – 1e6b7bb60e3467de48ccbc05aa730dd6

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan OnLineGames
Also known as: Trojan Agent, Trojan CI
SHA256: f3c187e6a4a69b3c2948118630518c7b1e5b08481987361e3e153094d0468986
SHA1: e721a639688beb63518712e5ff89d88f39af65d8
MD5: 1e6b7bb60e3467de48ccbc05aa730dd6
File size: 177152 bytes

Created files:

%SysDir%\drivers\klif.sys – Trojan OnLineGames
%SysDir%\nmdfgds0.dll – Trojan OnLineGames
%SysDir%\olhrwef.exe – Trojan OnLineGames

Trojan OnLineGames created autostart registry keys:

HKLM\System\CurrentControlSet\Services\KAVsys\Type: 01000000
HKLM\System\CurrentControlSet\Services\KAVsys\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\KAVsys\Start: 01000000
HKLM\System\CurrentControlSet\Services\KAVsys\ImagePath: \??\%WinDir%\System32\drivers\klif.sys
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\cdoosoft: %WinDir%\System32\olhrwef.exe

Leave a Reply