WIN32API.PYD – Trojan SuspiciousFile

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

WIN32API.PYD – Trojan SuspiciousFile removal

FileMD5Virus Alias
WIN32API.PYD 5d65cbab3b9df606dc8e1e6edffc8f94 Trojan SuspiciousFile

WIN32API.PYD size: 33280 bytes
WIN32API.PYD hash: 5D65CBAB3B9DF606DC8E1E6EDFFC8F94

Created files:

%TEMP%\_MEI115442\bz2.pyd
%TEMP%\_MEI115442\mfc90.dll
%TEMP%\_MEI115442\mfc90u.dll
%TEMP%\_MEI115442\mfcm90.dll
%TEMP%\_MEI115442\mfcm90u.dll
%TEMP%\_MEI115442\msvcm90.dll
%TEMP%\_MEI115442\msvcp90.dll
%TEMP%\_MEI115442\msvcr90.dll
%TEMP%\_MEI115442\pyHook._cpyHook.pyd
%TEMP%\_MEI115442\pysqlite2._sqlite.pyd
%TEMP%\_MEI115442\python26.dll
%TEMP%\_MEI115442\pythoncom26.dll
%TEMP%\_MEI115442\PyWinTypes26.dll
%TEMP%\_MEI115442\select.pyd
%TEMP%\_MEI115442\support\gen_py\__init__.py
%TEMP%\_MEI115442\unicodedata.pyd
%TEMP%\_MEI115442\win32api.pyd
%TEMP%\_MEI115442\win32evtlog.pyd
%TEMP%\_MEI115442\win32file.pyd
%TEMP%\_MEI115442\win32trace.pyd
%TEMP%\_MEI115442\win32ui.pyd
%TEMP%\_MEI115442\win32wnet.pyd
%TEMP%\_MEI115442\_bsddb.pyd
%TEMP%\_MEI115442\_ctypes.pyd
%TEMP%\_MEI115442\_hashlib.pyd
%TEMP%\_MEI115442\_imaging.pyd
%TEMP%\_MEI115442\_socket.pyd
%TEMP%\_MEI115442\_ssl.pyd
%TEMP%\_MEI115442\_win32sysloader.pyd

Detected by UnHackMe:

WIN32API.PYD
Default location: %TEMP%\_MEI115442\WIN32API.PYD

Dropper information:
MD5: 5998641f454f82b738977aa8b3d1d283
File size: 5296570 bytes

Leave a Reply