Remove %COMMON APPDATA%\THUNDER NETWORK\XMP5\V5.1.26.4324\PROGRAM\XLLIVEUD.EXE malware
%COMMON APPDATA%\THUNDER NETWORK\XMP5\V5.1.26.4324\PROGRAM\XLLIVEUD.EXE Malware Removal Guide
Manual removal instructions:
Antivirus Report of %COMMON APPDATA%\THUNDER NETWORK\XMP5\V5.1.26.4324\PROGRAM\XLLIVEUD.EXE:
%common appdata%\thunder network\xmp5\v5.1.26.4324\program\xlliveud.exe
Full path on a computer: %COMMON APPDATA%\THUNDER NETWORK\XMP5\V5.1.26.4324\PROGRAM\XLLIVEUD.EXE
Autostart registry keys:
HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\STANDARDPROFILE\AUTHORIZEDAPPLICATIONS\LIST\%PROGRAM FILES%\THUNDER NETWORK\XMP\V5.1.26.4324\BIN\XLLIVEUD.EXE: "%PROGRAM FILES%\THUNDER NETWORK\XMP\V5.1.26.4324\BIN\XLLIVEUD.EXE:*:ENABLED:XLLIVEUD"
HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\STANDARDPROFILE\AUTHORIZEDAPPLICATIONS\LIST\%COMMON APPDATA%\THUNDER NETWORK\XMP5\V5.1.26.4324\PROGRAM\XLLIVEUD.EXE: "%COMMON APPDATA%\THUNDER NETWORK\XMP5\V5.1.26.4324\PROGRAM\XLLIVEUD.EXE:*:ENABLED:XLLIVEUD"
Related Files:
%COMMON APPDATA%\THUNDER NETWORK\XMP5\V5.1.26.4324\PROGRAM\XLGRAPHIC.DLL
%COMMON APPDATA%\THUNDER NETWORK\XMP5\V5.1.26.4324\PROGRAM\XLGRAPHICPLUS.DLL
%COMMON APPDATA%\THUNDER NETWORK\XMP5\V5.1.26.4324\PROGRAM\XLLIVEUD.EXE
%COMMON APPDATA%\THUNDER NETWORK\XMP5\V5.1.26.4324\PROGRAM\XLLUARUNTIME.DLL
%COMMON APPDATA%\THUNDER NETWORK\XMP5\V5.1.26.4324\PROGRAM\XLSTAT4.DLL
The file XLLIVEUD.EXE is malware related.
You must delete the file XLLIVEUD.EXE immediately!
Delete the file XLLIVEUD.EXE without delay!
Kill the process XLLIVEUD.EXE and remove XLLIVEUD.EXE from the Windows startup.
XLLIVEUD.EXE is related to: Win32.Application.ThunderN.A, XLLIVEUD.EXE.
Virustotal = 1/54
MD5 = FEAABFCDA1736BD9412B6888F8BC5E76
File Size: 354088
File information:
OriginalFilename: XLLiveUD
FileDescription: XLLiveUD
InternalName: XLLiveUD 2
CompanyName: ShenZhen Xunlei Networking Technologies,LTD
LegalCopyright: Copyright (c) 2003-2014 Xunlei Networking Technologies,LTD
%COMMON APPDATA%\THUNDER NETWORK\XMP5\V5.1.26.4324\PROGRAM\XLLIVEUD.EXE | Malware |
%COMMON APPDATA%\THUNDER NETWORK\XMP5\V5.1.26.4324\PROGRAM\XLLIVEUD.EXE | Dangerous |
%COMMON APPDATA%\THUNDER NETWORK\XMP5\V5.1.26.4324\PROGRAM\XLLIVEUD.EXE | High Risk |
Autostart registry keys:
HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\STANDARDPROFILE\AUTHORIZEDAPPLICATIONS\LIST\%PROGRAM FILES%\THUNDER NETWORK\XMP\V5.1.26.4324\BIN\XLLIVEUD.EXE: "%PROGRAM FILES%\THUNDER NETWORK\XMP\V5.1.26.4324\BIN\XLLIVEUD.EXE:*:ENABLED:XLLIVEUD"
HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\STANDARDPROFILE\AUTHORIZEDAPPLICATIONS\LIST\%COMMON APPDATA%\THUNDER NETWORK\XMP5\V5.1.26.4324\PROGRAM\XLLIVEUD.EXE: "%COMMON APPDATA%\THUNDER NETWORK\XMP5\V5.1.26.4324\PROGRAM\XLLIVEUD.EXE:*:ENABLED:XLLIVEUD"
Related Files:
%COMMON APPDATA%\THUNDER NETWORK\XMP5\V5.1.26.4324\PROGRAM\XLGRAPHIC.DLL
%COMMON APPDATA%\THUNDER NETWORK\XMP5\V5.1.26.4324\PROGRAM\XLGRAPHICPLUS.DLL
%COMMON APPDATA%\THUNDER NETWORK\XMP5\V5.1.26.4324\PROGRAM\XLLIVEUD.EXE
%COMMON APPDATA%\THUNDER NETWORK\XMP5\V5.1.26.4324\PROGRAM\XLLUARUNTIME.DLL
%COMMON APPDATA%\THUNDER NETWORK\XMP5\V5.1.26.4324\PROGRAM\XLSTAT4.DLL
The file XLLIVEUD.EXE is malware related.
You must delete the file XLLIVEUD.EXE immediately!
Delete the file XLLIVEUD.EXE without delay!
Kill the process XLLIVEUD.EXE and remove XLLIVEUD.EXE from the Windows startup.
XLLIVEUD.EXE is related to: Win32.Application.ThunderN.A, XLLIVEUD.EXE.
Virustotal = 1/54
MD5 = FEAABFCDA1736BD9412B6888F8BC5E76
File Size: 354088
File information:
OriginalFilename: XLLiveUD
FileDescription: XLLiveUD
InternalName: XLLiveUD 2
CompanyName: ShenZhen Xunlei Networking Technologies,LTD
LegalCopyright: Copyright (c) 2003-2014 Xunlei Networking Technologies,LTD
Dmitry Sokolov:
I created UnHackMe in 2006 to fix the problem that antivioruses did not fix: detecting rootkits.
Since that time I work every day to fix the issues that antiviruses cannot.
If your antivirus have not helped you solve the problem, you should try UnHackMe.
We are a small company and you can ask me directly, if you have any questions.