Trojan OnLineGames – test.bat – 1942c805361fea87a7e548e62c2fc1e0

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan OnLineGames
Also known as: Trojan Graftor, Trojan Downloader.Generic
SHA256: 38890101d9188799e6089e2bd6949994377cd33ef5cf17e4a7b7909ee709b4d8
SHA1: 5f38679562a8c544810f0c2e6d2f2ccd00a604af
MD5: 1942c805361fea87a7e548e62c2fc1e0
File size: 12800 bytes

Created files:

C:\test.bat – Trojan OnLineGames
%SysDir%\Help360tlbb.exe – Trojan OnLineGames
%SysDir%\tlbbspi.dll – Trojan OnLineGames

Trojan OnLineGames created autostart registry keys:

HKLM\System\CurrentControlSet\Services\WS2IFSL\Type: 01000000
HKLM\System\CurrentControlSet\Services\WS2IFSL\Start: 01000000
HKLM\System\CurrentControlSet\Services\WS2IFSL\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\WS2IFSL\DisplayName: Windows Socket 2.0 Non-IFS Service Provider Support Environment
HKLM\System\CurrentControlSet\Services\WS2IFSL\ImagePath: \SystemRoot\System32\drivers\ws2ifsl.sys

Leave a Reply