The file HBYY.DLL is malware related.
You must delete the file HBYY.DLL immediately!
Delete the file HBYY.DLL without delay!
Kill the process HBYY.DLL and remove HBYY.DLL from the Windows startup.
Malware Analysis of HBYY.DLL
Full path on a computer: %SysDir%\HBYY.dll
Detected by UnHackMe:
HBYY.DLL
Default location: %SysDir%\HBYY.dll
Removal Results: Success
Number of reboot: 1
HBYY.DLL is known as:
Trojan.OnLineGames, PWS.Lolyda.S, Trojan.Downloader.24576.ASE, Medium Risk Malware, Win-Trojan.Xema.variant, PSW.OnLineGames.ODH, Trojan-PWS.OnlineGames, Trojan.PSW.XYOnline.ahs, PSW.OnlineGames.BGFP
HBYY.DLL hash:
- MD5: d43be2f7791d9c45a6607856eb0c3fcd
How to quickly detect HBYY.DLL presence?
Registry:
- HKLM\Software\Microsoft\Windows\CurrentVersion\Run\HBService32: “System.exe”
- HKLM\System\CurrentControlSet\Services\HBKernel32\ImagePath: “system32\drivers\HBKernel32.sys”
- HKLM\System\CurrentControlSet\Services\HBKernel32\DisplayName: “HBKernel32 Driver”
- HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs: “HBYY.dll”
Files:
- %SysDir%\drivers\HBKernel32.sys
- %SysDir%\HBYY.dll
- %SysDir%\System.exe