I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
The file MAINSYS.DLL is identified as a virus dropper.
The dropper MAINSYS.DLL is used for downloading and installing other malware, Trojans, viruses by the commands received from the Command Center.
The file MAINSYS.DLL loads into the computer memory and tries to connect to the dangerous web site.
Usually the MAINSYS.DLL dropper does not infect the files on the computer and does not replicate itself on other computers.
Kill the MAINSYS.DLL process and delete the file MAINSYS.DLL.
MAINSYS.DLL Information and Removal:
MAINSYS.DLL is known as: Trojan.Gen [Symantec] Trojan-Downloader.Win32.Agent.gbxo [Kaspersky Lab].
MD5 of MAINSYS.DLL = 0A56E352FA3F30BD30EEF840EB5C9FAE
MAINSYS.DLL size is 53248 bytes.
Full path on a computer: %COMMONTEMPLATES%\MAINSYS.DLL
Related Files:
%TEMPLATES%\OBG3H81J46E7T4G6U26E170O
%COMMONAPPDATA%\WINSYSTEM.TDL
%COMMONAPPDATA%\WINCAP.AI
%COMMONTEMPLATES%\MAINSYS.DLL
%APPDATA%\CLEANHDM.DLL
%APPDATA%\CLEANHDM.EXE
%APPDATA%\MOUSEDRIVER.BAT
%APPDATA%\ZF2C.EXE
%USERPROFILE%\DELME.BAT
%APPDATA%\SYL.EXE
%TEMP%\15.TMP
%TEMP%\18.TMP
%SYSTEM%\FIPLOCK.DLL
%TEMP%\4141559320.EXE
%TEMP%\8.TMP
%WINDIR%\TASKMGR.EXE
%SYSTEM%\SYSTEM.EXE
%TEMP%\INSTALL.EXE
%WINDIR%\WIN16.EXE
%TEMP%\LSASS.EXE
%TEMP%\MANSERVICE-0.47.7.EXE
%TEMP%\MANSERVICE-0.96.7.EXE
%TEMP%\MANSERVICE-50.71.57.EXE
%TEMP%\MANSERVICE-56.86.4.EXE
%TEMP%\MANSERVICE-75.68.59.EXE
%TEMP%\MANSERVICE-93.90.7.EXE
%TEMP%\MANSERVICE-96.83.7.EXE
%TEMP%\MBGG1XJXT2J2.EXE
%TEMP%\MFC64DBF.DLL
%TEMP%\NSY12.TMP\NSISDL_TEMP.ZUGO
%TEMP%\NSAF.TMP\NSISDL.DLL
%TEMP%\NSAF.TMP\SYSTEM.DLL
%TEMP%\NSAF.TMP\ZSILENT.EXE
%TEMP%\NSN11.TMP
%TEMP%\NSW3.TMP\1EUROP.EXE
%TEMP%\NSW3.TMP\6TBP.EXE
%TEMP%\NSY12.TMP\ERRORTRACKING.ZUGO
%TEMP%\NSY12.TMP\GETVERSION.DLL
%TEMP%\NSY12.TMP\INETC.DLL
%TEMP%\NSY12.TMP\KILLPROCDLL.DLL
%TEMP%\NSY12.TMP\MATH.DLL
%TEMP%\NSY12.TMP\NSISDL.DLL
%PROGRAMFILES%\SEARCH TOOLBAR\SEARCHTOOLBAR.DLL
%TEMP%\NSY12.TMP\SEARCHTOOLBAR.XPI
%PROGRAMFILES%\SEARCH TOOLBAR\SEARCHTOOLBARUPDATER.EXE
%TEMP%\NSY12.TMP\SYSTEM.DLL
%TEMP%\PECCB.EXE
%TEMP%\QWUTU.EXE
%TEMP%\TCOMFPAG.EXE
%TEMP%\WINAMP.EXE
%TEMP%\YTTWULHW.EXE
%USERPROFILE%\SWORK.BAT
%WINDIR%\MQCMFI.DLL
%WINDIR%\SPOOLSV.EXE
%WINDIR%\SVCHOST.EXE
%SYSTEM%\ELITKUQWR.DLL
%SYSTEM%\FHPATCH.DLL
%SYSTEM%\IPHY.DLL
%SYSTEM%\VCMJ.EXE
%SYSTEM%\WINSET.INI
%WINDIR%\WIN.EXE