Solved! Use OLEMDB32.DLL (Virus Sality) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

OLEMDB32.DLL – Virus Sality removal

File MD5 Virus Alias
OLEMDB32.DLL 65387b1305f01ede9bce1b664207d5d7 Virus Sality
OLEMDB32.DLL 65387b1305f01ede9bce1b664207d5d7 Trojan Generic
OLEMDB32.DLL 65387b1305f01ede9bce1b664207d5d7 Trojan Agent

OLEMDB32.DLL size: 23552 bytes
OLEMDB32.DLL hash: 65387B1305F01EDE9BCE1B664207D5D7

Created files:

%WinDir%\dc.exe
%WinDir%\Help\Other.exe
%WinDir%\inf\Other.exe
%WinDir%\SVIQ.EXE
%WinDir%\system\Fun.exe
%SysDir%\config\Win.exe
%SysDir%\olemdb32.dll
%SysDir%\olemdb32.dl_
%SysDir%\WinSit.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\shell: Explorer.exe %WinDir%\System32\WinSit.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\dc2k5: %WinDir%\SVIQ.EXE
HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows\load: %WinDir%\inf\Other.exe

Detected by UnHackMe:

OLEMDB32.DLL
Default location: %SYSDIR%\OLEMDB32.DLL

Dropper information:
MD5: 02c6e3e52c010b7f18ab0c7a90107d1e
File size: 77824 bytes

Leave a Reply