user.dmp – Trojan OnLineGames

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

user.dmp – Trojan OnLineGames removal

FileVirus Alias
user.dmp Trojan OnLineGames
user.dmp Trojan Siggen
user.dmp Trojan Crypt
user.dmp Trojan Generic
user.dmp Trojan DNAScan
user.dmp Backdoor PcClien

Created files:

%SysDir%\RzmstnC.dll – Trojan OnLineGames
%Common AppData%\Microsoft\Dr Watson\user.dmp – Trojan OnLineGames

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\MediaCenter\Type: 10000000
HKLM\System\CurrentControlSet\Services\MediaCenter\Start: 02000000
HKLM\System\CurrentControlSet\Services\MediaCenter\DisplayName: MS Media Control Center
HKLM\System\CurrentControlSet\Services\MediaCenter\ImagePath: %SystemRoot%\System32\svchost.exe -k krnlsrvc
HKLM\System\CurrentControlSet\Services\MediaCenter\Description: Provides support for media palyer. This service can’t be stoped.

Detected by UnHackMe:

user.dmp
Default location: %Common AppData%\Microsoft\Dr Watson\user.dmp

Dropper information:
SHA256: fa45e36bb5ccdf3455ca2c3ada3e82e9280c3b3412a7a752541aa5c156acebe6
SHA1: 6e496923154de5de254a37bfb20fcfc058c822cf
MD5: 7847f5f135422054e7df5e21d2cd6e5d
File size: 859648 bytes

Leave a Reply