Home / Spyware Encyclopedia / GameThief.Lmir << Back

Recommendation to Automatically remove GameThief.Lmir


Our products can remove GameThief.Lmir and thousands of other Virus and Spyware automatically and instantly.

GameThief.Lmir Details


  • Category GameThief
  • Discovered 3/10/2009 11:36:18 AM
  • Modified 3/4/2024 10:10:49 AM
  • Threat Level Critical
  • Category Description
    A threat that attempts to steal vital information from the user with regards to online gaming activity and is capable of connecting to a remote site to download possible updates of its application.

The following Files were created:
VALUEFILESIZECOMPANYNAMEVERSIONSIGNATUREDate
rundll32.com 40085W8O8O8O8L0.0.0.50  
rundll32.com 17943svchost1.0.0.0  
rundll32.com 17941svchost1.0.0.0  
rundll32.com 17942svchost1.0.0.0  
rundll32.com 47352SQL0.0.0.67  
rundll32.com 52428s0bMrHI6p29gzRPvZuoB0.0.0.102  
rundll32.com 46644qWeRtYuIoP0.0.0.8452087e59a59cbc16b79aaedc08a873a0 
rundll32.com 46396oSOow3C78sAe0.0.0.89  
rundll32.com 46445N5SD5K6S0.0.0.86  
rundll32.com 46440m6A68E4s2G6Id74E0.0.0.91  

The following Registry Entries were created:
..\Software\Microsoft\Windows\CurrentVersion\Run\\"123"\"%win%\123.exe"
..\Software\Microsoft\Windows\CurrentVersion\policies\explorer\run\"COM Service"\"%WIN%\msagent\msfpcq.com"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"winupdate"\"%DAS.AU.LS%\Temp\winupdte.exe"
..\Software\Classes\AFG.ShellExecuteHook1007\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Run\\"IMJPMIG8.10"\"%PF%\360adjr.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"IMJPMIG8.18"\"%WIN%\IME\IMJP8_1\imjpmig.exe"
..\Software\Microsoft\Windows\CurrentVersion\Run\\"IMJPMIG8.13"\"%WIN%\IME\IMJP8_1\imjpmig.exe"
..\Software\Classes\PMKJSZI.ShellExecuteHook1007\(Default)
..\Software\Microsoft\Windows\CurrentVersion\Run\\"31CD8D5C"\"%DAS.AU.LS%\Temp\31cd8d5c.exe"
..\Software\Classes\UJKFGXR.ShellExecuteHook1007\(Default)

Notice
Please note that the following information is not controlled or endorsed by Max Secure Software. They are captured automatically by tools in our malware Research Lab as a result of executing Spyware Files or browsing Internet in virtual environment. Please contact us if you find any information inappropriate for removal. All the work contained in this report is copyrighted and should not be copied without permission from Max Secure Antivirus. We do not recommend browsing or removing these entries on your own manually. We do not take any warranty against the use or result of the use of this information.

Home / Malware Encyclopedia << Back

Max Total Security can detect & quarantine this Malware