CURSOR.LMD – Unclassified Malware

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

CURSOR.LMD – Unclassified Malware removal

CURSOR.LMD size: 50176 bytes
CURSOR.LMD hash: D603845D799B603E3448752E514B5004

Created files:

%TEMP%\ir_ext_temp_0\AutoPlay\autorun.cdd
%TEMP%\ir_ext_temp_0\AutoPlay\Buttons\1_Grey_Blue.btn
%TEMP%\ir_ext_temp_0\AutoPlay\Buttons\Back.btn
%TEMP%\ir_ext_temp_0\AutoPlay\Buttons\Exit.btn
%TEMP%\ir_ext_temp_0\AutoPlay\Buttons\Next.btn
%TEMP%\ir_ext_temp_0\AutoPlay\Docs\Developer Information\MagAPI.dll
%TEMP%\ir_ext_temp_0\AutoPlay\Plugins\CDAudio\CDAudio.lmd
%TEMP%\ir_ext_temp_0\AutoPlay\Plugins\Cursor\Cursor.lmd
%TEMP%\ir_ext_temp_0\AutoPlay\Plugins\Encoding\Encoding.lmd
%TEMP%\ir_ext_temp_0\AutoPlay\Plugins\LISTBOXEX\LISTBOXEX.APO
%TEMP%\ir_ext_temp_0\AutoPlay\Plugins\Project\Project.lmd
%TEMP%\ir_ext_temp_0\AutoPlay\Plugins\Unicode\Unicode.lmd
%TEMP%\ir_ext_temp_0\AutoPlay\Plugins\WinApi\WinApi.lmd
%TEMP%\ir_ext_temp_0\AutoPlay\Scripts\Add_Port.exe
%TEMP%\ir_ext_temp_0\autorun.exe
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\DAN\UM_AOTL.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\DAN\UM_AOTLG.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\DEU\UM_AOTL.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\DEU\UM_AOTLG.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\disk1
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\ENG\UM_AOTL.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\ENG\UM_AOTLG.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\FRA\UM_AOTL.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\FRA\UM_AOTLG.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\GRK\UM_AOTL.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\GRK\UM_AOTLG.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\ITA\UM_AOTL.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\ITA\UM_AOTLG.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\JPN\UM_AOTL.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\JPN\UM_AOTLG.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\KOR\UM_AOTL.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\KOR\UM_AOTLG.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\POL\UM_AOTL.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\POL\UM_AOTLG.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\POR\UM_AOTL.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\POR\UM_AOTLG.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\ROM\UM_AOTL.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\ROM\UM_AOTLG.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\RUS\UM_AOTL.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\RUS\UM_AOTLG.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\SCH\UM_AOTL.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\SCH\UM_AOTLG.dll
%TEMP%\ir_ext_temp_0\Drivers\AOTA Family\32Bit\W2K\SPA\UM_AOTL.dll

Detected by UnHackMe:

CURSOR.LMD
Default location: %TEMP%\IR_EXT_TEMP_0\AUTOPLAY\PLUGINS\CURSOR\CURSOR.LMD

Dropper information:
MD5: d7909012f414840ae7a73d202cef9c6e
File size: 21200308 bytes

Leave a Reply