UPDATED3B1F.EXE – Trojan OnLineGames

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

UPDATED3B1F.EXE – Trojan OnLineGames removal

FileMD5Virus Alias
UPDATED3B1F.EXE cdc555406c7ceacc5782eec02d44bb5a Trojan OnLineGames
UPDATED3B1F.EXE cdc555406c7ceacc5782eec02d44bb5a Trojan DLOADER
UPDATED3B1F.EXE cdc555406c7ceacc5782eec02d44bb5a Trojan SuspiciousFile
UPDATED3B1F.EXE cdc555406c7ceacc5782eec02d44bb5a Trojan Artemis
UPDATED3B1F.EXE cdc555406c7ceacc5782eec02d44bb5a Trojan XPACK
UPDATED3B1F.EXE cdc555406c7ceacc5782eec02d44bb5a Trojan Generic

UPDATED3B1F.EXE size: 39952 bytes
UPDATED3B1F.EXE hash: CDC555406C7CEACC5782EEC02D44BB5A

Created files:

%WinDir%\System32\drivers\Beep.sys
%WinDir%\System32\updated3b1f.exe
%TEMP%\999.exe
%TEMP%\DNFBox.exe
%TEMP%\_ir_sf_temp_0\lua5.1.dll

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\54rk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

Detected by UnHackMe:

UPDATED3B1F.EXE
Default location: %SYSDIR%\UPDATED3B1F.EXE

Dropper information:
MD5: 297de3f3c081bb8ef53023b924626c24
File size: 4024300 bytes

Leave a Reply