I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
KUBIZ.DLL – Backdoor Hupigon removal
File | MD5 | Virus Alias |
---|---|---|
KUBIZ.DLL | 24a3bb119539fcd188fd3035242cf613 | Backdoor Hupigon |
KUBIZ.DLL | 24a3bb119539fcd188fd3035242cf613 | Trojan Eldorado |
KUBIZ.DLL | 24a3bb119539fcd188fd3035242cf613 | Backdoor Pigeon |
KUBIZ.DLL | 24a3bb119539fcd188fd3035242cf613 | Trojan Agent |
KUBIZ.DLL | 24a3bb119539fcd188fd3035242cf613 | Trojan Delf |
KUBIZ.DLL size: 872997 bytes
KUBIZ.DLL hash: 24A3BB119539FCD188FD3035242CF613
Created files:
%Program Files%\Kesog\Iyla.exe
%Program Files%\Kesog\Oigk\Kubiz.dll
%Program Files%\Kesog\Olwa.exe
%TEMP%\g839\RaidenMAILD.v1.9.16.XP.Version-Lz0.exe
Autostart registry keys:
HKLM\System\CurrentControlSet\Services\OALX\Start: 02000000
HKLM\System\CurrentControlSet\Services\OALX\Type: 10000000
HKLM\System\CurrentControlSet\Services\OALX\Description: Data Online Transaction Processing Module
HKLM\System\CurrentControlSet\Services\OALX\DisplayName: Data Online Transaction Processing Module
HKLM\System\CurrentControlSet\Services\OALX\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\OALX\Group: TDI
HKLM\System\CurrentControlSet\Services\OALX\ObjectName: LocalSystem
HKLM\System\CurrentControlSet\Services\OALX\ImagePath: %Program Files%\Kesog\Iyla.exe
Detected by UnHackMe:
KUBIZ.DLL
Default location: %PROGRAM FILES%\KESOG\OIGK\KUBIZ.DLL
Dropper information:
MD5: 750cbd1f38887dabd918ec854c216605
File size: 14912663 bytes