Trojan.PWS.Onlinegames.ZGE
| Alert Level : | verylow |
| Discovered: | 2008Jul18 |
| Tag: | Trojan PWS |
| Discoverer and Source: | http://www.bitdefender.com/ |
Malware Behavior and Technical Description
Presence of the specified files and registry keys.
The virus is initialy an executable file, when is launched does following:
copies itself to %SYSTEM%\[virus_name].exe (e.g. ckvo.exe)
drop %SYSTEM%\[virus_name][N].exe (e.g. ckvo1.dll) - which is used to monitors
actions inside games executables(keystrokes)
drops %TEMP%\f.dll - which contains the code for bellow mentioned actions
overwrittes: %SYSTEM%\drivers\vga.sys and loads this driver.
In order to be launched when partitions
Removal Trojan.PWS.Onlinegames.ZGE instructions:
Please let BitDefender disinfect your files.
Manual: Using filesystem browsers other than Explorer enable displying of hidden files and delate above
metioned files
Press Start, Run... and in the box type Regedit.exe, find the above registry entries and delete them. Please let BitDefender disinfect your files.
Need help? Live computer support via remote at SupportSpace |

