BehavesLike.Win32.Trojan.hm

Dmitry Sokolov recommends UnHackMe!

UnHackMe is a powerful tool against malware.

UnHackMe quickly removes rootkits/malware/adware/browser hijack issues!

: Solved! 5 Stars (5 / 5)

BehavesLike.Win32.Trojan.hm also known as Win32:Adware-gen [Adw], Multiplug.dll.gen.a, Gen:Variant.Adware.Zusy.121779.

Malware Analysis of BehavesLike.Win32.Trojan.hm – XA5HYA7BF3O3BW.DLL

Created files:

%Common Appdata%\ceoemeoggjkcmmedoonhbkfhfjbmklhp\Z.js
%Program Files%\UniDeals\xA5HYa7BF3O3bw.dat
%Program Files%\UniDeals\xA5HYa7BF3O3bw.dll
%Program Files%\UniDeals\xA5HYa7BF3O3bw.exe
%Program Files%\UniDeals\xA5HYa7BF3O3bw.tlb

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{11F6D5AB-263F-388E-74DE-E3DECD390E3F}\DisplayName: “UniiDeallsa”
HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{11F6D5AB-263F-388E-74DE-E3DECD390E3F}\UninstallString: “”%Program Files%\UniiDeallsa\UniiDeallsa.exe” /s /n /i:”ExecuteCommands;UninstallCommands” “””

Detected by UnHackMe:

XA5HYA7BF3O3BW.DLL
Default location: %PROGRAM FILES%\UNIDEALS\XA5HYA7BF3O3BW.DLL

Dropper hash(md5): 8555546f8561a3707ca2608b71fb407d

Written by 

Malware Hunter.

UnHackMe removes malware invisible for your antivirus!

Free Download

1
UnHackMe is compatible with most antivirus software.
UnHackMe is 100% CLEAN, which means it does not contain any form of malware, including adware, spyware, viruses, trojans and backdoors. VirusTotal (0/56).
System Requirements: Windows 2000-Windows 8.1/10. UnHackMe uses minimum of computer resources.

WordPress SEO fine-tune by Meta SEO Pack from Poradnik Webmastera