trojan-Game Thief.Win32.magania.cunp



Threat Name: trojan-Game Thief.Win32.magania.cunp
Spread Method:
Instant Message(MSN,Gtalk,QQ etc.)
Threat type:trojan-Game Thief.Win32
trojan-Game Thief.Win32.magania.cunp first detected:2010-02-21
Virus file known is dll file written in C++
File Size:519K Bytes.
Behavior:places the file shown below in the root of the disk::\autorun.inf
Level of Spread:3
Level of Threat:4
Reported Path:E:\Winnt\
MD5:C5N007cXG0ru1p841v5IidD82jRVfQHs
SHA1..:KWv3IEegn36wM62T38Wq51LHOraE4yp7sF8RQL45

Alias:
Vexira :Backdoor.Win32.Agent.qnk
Rising:Backdoor.Win32.Agent.qoe
Ikarus :Worm.Win32.AutoRun.elg
AVG7 :Backdoor.Win32.Agent.ojg
Ikarus :Trojan-Ransom.Win32.Hexzone.en
Rising:Trojan-Downloader.Win32.Dadobra.ng
Report Countries:
Australia
Costa Rica
trojan-Game Thief.Win32.magania.cunp Removal instructions:
Use killbox kill the file if the file refuse to be deleted
How to remove trojan-Game Thief.Win32.magania.cunp :
1.Delete the IE temporary files.
2.Update antivirus database and run a full scan.
3.Run the following script:
CODE
begin
SetAVZGuardStatus(True);
SearchRootkit(true, true);
QuarantineFile(’C:\DOCUME~1\Emertat\LOCALS~1\Temp\herss.exe’,”);
QuarantineFile(’C:\DOCUME~1\Emertat\LOCALS~1\Temp\cvasds0.dll’,”);
QuarantineFile(’C:\autorun.inf’,”);
QuarantineFile(’D:\autorun.inf’,”);
QuarantineFile(’E:\autorun.inf’,”);
DeleteFile(’E:\autorun.inf’);
DeleteFile(’D:\autorun.inf’);
DeleteFile(’C:\autorun.inf’);
DeleteFile(’C:\DOCUME~1\Emertat\LOCALS~1\Temp\cvasds0.dll’);
DeleteFile(’C:\DOCUME~1\Emertat\LOCALS~1\Temp\herss.exe’);
BC_ImportDeletedList;
BC_ImportAll;
ExecuteSysClean;
BC_Activate;
RebootWindows(true);
end.

Tags:

Need help? Post you problem on Free Malware Remove Help forum


trojan-Game Thief.Win32.magania.cunp Summary

  • Virus Name:trojan-Game Thief.Win32.magania.cunp
  • Detected By:Kaspersky antivirus program
  • Virus trojan-Game Thief.Win32.magania.cunp Detected times:2315971times
  • trojan-Game Thief.Win32.magania.cunp Overall Risk:Medium 7315972
  • trojan-Game Thief.Win32.magania.cunp file size:36159720 bytes
  • trojan-Game Thief.Win32.magania.cunpwas first Detected by Kaspersky on Sunday, February 21st, 2010 , 12:59 pm,trojan-Game Thief.Win32.magania.cunp is a new threats of Hacking,Malware,Spam,worm.
  • Remove trojan-Game Thief.Win32.magania.cunp instruction:

  • 1.Temporarily Disable System Restore;2.Reboot computer in SafeMode;3.delte trojan-Game Thief.Win32.magania.cunp virus files and kill trojan-Game Thief.Win32.magania.cunp file task process(if have);4.Delete/Modify any values added to the registry by trojan-Game Thief.Win32.magania.cunp ;5.delete IE temp files,restart the computer and run a whole scan with Kaspersky. trojan-Game Thief.Win32.magania.cunp virus files as following:

    Leave a Reply