Home / Spyware Encyclopedia / GameThief.lmir.hsb << Back

Recommendation to Automatically remove GameThief.lmir.hsb


Our products can remove GameThief.lmir.hsb and thousands of other Virus and Spyware automatically and instantly.

GameThief.lmir.hsb Details


  • Category GameThief
  • Discovered 11/30/2009 1:42:44 PM
  • Modified 7/10/2023 6:30:04 PM
  • Threat Level Critical
  • Category Description
    A threat that attempts to steal vital information from the user with regards to online gaming activity and is capable of connecting to a remote site to download possible updates of its application.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
8e977957.exe 1700352  2b156274e9e1f483fbee5c2eb56d1779 
xlsxrxhao.dll 726528好搜搜索1.0.1.342ed966faaecb8ed0c028eb87727b7307 
mlxhrhhao.dll 726528好搜搜索1.0.1.342ed966faaecb8ed0c028eb87727b7307 
cnyfksvc.dll 166400  883b42143eb9bb7d00d55a5d5b4eb936 
sfusfsvc.dll 166400  883b42143eb9bb7d00d55a5d5b4eb936 
rtrtplmt.exe 473600  ed6c5f63ad43d2212c56a55007192267 
rtllrukw.exe 473600  ed6c5f63ad43d2212c56a55007192267 
oxjluin.dll 161792 9.0.0.15e440e73373f8b6a2d46853f43dc77405 
bhwrain.dll 161792 9.0.0.15e440e73373f8b6a2d46853f43dc77405 

The following Registry Entries were created:
..\System\CurrentControlSet\Services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list\"%win.sys32%\uikeiy\xlsxrxhao.dll"\"%win.sys32%\uikeiy\xlsxrxhao.dll:*:enabled:xlsxrxhao"
..\System\CurrentControlSet\Services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list\"%win.sys32%\uikeiy\oxjluin.dll"\"%win.sys32%\uikeiy\oxjluin.dll:*:enabled:oxjluin"
..\System\CurrentControlSet\Services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list\"%win.sys32%\uikeiy\cnyfksvc.dll"\"%win.sys32%\uikeiy\cnyfksvc.dll:*:enabled:cnyfksvc"
..\System\CurrentControlSet\Services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list\"%win.sys32%\rtrtplmt.exe"\"%win.sys32%\rtrtplmt.exe:*:enabled:rtrtplmt"
..\System\CurrentControlSet\Services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list\"%win.sys32%\rtllrukw.exe"\"%win.sys32%\rtllrukw.exe:*:enabled:rtllrukw"
..\System\CurrentControlSet\Enum\root\legacy_rtpwinlogin\(Default)
..\Software\Classes\xlsxrxhao.iebarprocess\(Default)
..\Software\Classes\mlxhrhhao.iebarprocess\(Default)
..\Software\Microsoft\internet explorer\searchscopes\{a29fd261-99ac-4983-9e03-064d65ec16af}\(Default)
..\Software\Microsoft\esent\process\rtrtplmt\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware