Trojan OnLineGames – test.bat – 7aa703b69bf281a23c8f7de13ada496a

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan OnLineGames
Also known as: Trojan Generic, Trojan Comisproc
SHA256: 8e1a9be985298edb82f84104bd5931c5491ec26f51c5bd551a7b6b1165cb3e64
SHA1: 53f4b2133b24c8833a739cc73fad3a3dadf19e06
MD5: 7aa703b69bf281a23c8f7de13ada496a
File size: 12800 bytes

Created files:

C:\test.bat – Trojan OnLineGames
%SysDir%\Help360tlbb.exe – Trojan OnLineGames
%SysDir%\tlbbspi.dll – Trojan OnLineGames

Trojan OnLineGames created autostart registry keys:

HKLM\System\CurrentControlSet\Services\WS2IFSL\Type: 01000000
HKLM\System\CurrentControlSet\Services\WS2IFSL\Start: 01000000
HKLM\System\CurrentControlSet\Services\WS2IFSL\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\WS2IFSL\DisplayName: Windows Socket 2.0 Non-IFS Service Provider Support Environment
HKLM\System\CurrentControlSet\Services\WS2IFSL\ImagePath: \SystemRoot\System32\drivers\ws2ifsl.sys

Leave a Reply