I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
Unclassified Malware
SHA256: 13b0625ce278de0e337f30b8b9f18da3ac75624914d11fefc363c046e8138f5d
SHA1: 47fed42caec8c210717e64c813edd3beb15fce9a
MD5: 5dbccd7f9cc9ddb4f33a90cead858eaf
File size: 2473472 bytes
Created files:
%SysDir%\actskin4.ocx – Unclassified Malware
%SysDir%\COMDLG32.OCX – Unclassified Malware
%SysDir%\Mscomctl.ocx – Unclassified Malware
%SysDir%\Mswinsck.ocx – Unclassified Malware
%SysDir%\Ri.ocx – Unclassified Malware
%SysDir%\unicows.dll – Unclassified Malware
Unclassified Malware created autostart registry keys:
HKLM\Software\Classes\CLSID\{0944D16C-D0F4-4389-982A-A085595A9EB3}\InprocServer32 : %WinDir%\System32\actskin4.ocx
HKLM\Software\Classes\CLSID\{0944D16C-D0F4-4389-982A-A085595A9EB3}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{1EFB6596-857C-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{1EFB6596-857C-11D1-B16A-00C0F0283628}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{248DD896-BB45-11CF-9ABC-0080C7E7B78D}\InprocServer32 : %WinDir%\System32\Mswinsck.ocx
HKLM\Software\Classes\CLSID\{248DD896-BB45-11CF-9ABC-0080C7E7B78D}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{248DD897-BB45-11CF-9ABC-0080C7E7B78D}\InprocServer32 : %WinDir%\System32\Mswinsck.ocx
HKLM\Software\Classes\CLSID\{2C247F23-8591-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{2C247F23-8591-11D1-B16A-00C0F0283628}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{35053A22-8589-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{35053A22-8589-11D1-B16A-00C0F0283628}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{3831331E-0D11-4716-871D-68F3B11D23C9}\InprocServer32 : %WinDir%\System32\actskin4.ocx
HKLM\Software\Classes\CLSID\{3831331E-0D11-4716-871D-68F3B11D23C9}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{3C4F3BE3-47EB-101B-A3C9-08002B2F49FB}\InprocServer32 : %WinDir%\System32\COMDLG32.OCX
HKLM\Software\Classes\CLSID\{3C4F3BE5-47EB-101B-A3C9-08002B2F49FB}\InprocServer32 : %WinDir%\System32\COMDLG32.OCX
HKLM\Software\Classes\CLSID\{3C4F3BE7-47EB-101B-A3C9-08002B2F49FB}\InprocServer32 : %WinDir%\System32\COMDLG32.OCX
HKLM\Software\Classes\CLSID\{3DCD2BC5-8489-48AE-891F-90C8B2F19F56}\InprocServer32 : %WinDir%\System32\actskin4.ocx
HKLM\Software\Classes\CLSID\{3DCD2BC5-8489-48AE-891F-90C8B2F19F56}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{52C01A76-19E2-4A50-AE8A-38FFBCCF9182}\InprocServer32 : %WinDir%\System32\actskin4.ocx
HKLM\Software\Classes\CLSID\{52C01A76-19E2-4A50-AE8A-38FFBCCF9182}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{5954EA75-9BFA-461A-BD34-CEA3A861FF19}\InprocServer32 : %WinDir%\System32\actskin4.ocx
HKLM\Software\Classes\CLSID\{5954EA75-9BFA-461A-BD34-CEA3A861FF19}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{66833FE6-8583-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{66833FE6-8583-11D1-B16A-00C0F0283628}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{68F45445-3569-11D7-90A8-00E0297F0885}\InprocServer32 : %WinDir%\System32\Ri.ocx
HKLM\Software\Classes\CLSID\{68F45445-3569-11D7-90A8-00E0297F0885}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{68F45446-3569-11D7-90A8-00E0297F0885}\InprocServer32 : %WinDir%\System32\Ri.ocx
HKLM\Software\Classes\CLSID\{7629CFA2-3FE5-101B-A3C9-08002B2F49FB}\InprocServer32 : %WinDir%\System32\COMDLG32.OCX
HKLM\Software\Classes\CLSID\{7629CFA4-3FE5-101B-A3C9-08002B2F49FB}\InprocServer32 : %WinDir%\System32\COMDLG32.OCX
HKLM\Software\Classes\CLSID\{762EC429-1A5D-4AB8-844A-9A552E1241DA}\InprocServer32 : %WinDir%\System32\actskin4.ocx
HKLM\Software\Classes\CLSID\{762EC429-1A5D-4AB8-844A-9A552E1241DA}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{8E3867A3-8586-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{8E3867A3-8586-11D1-B16A-00C0F0283628}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{A506EF88-9EFC-4522-BFE1-A8E886A64D80}\InprocServer32 : %WinDir%\System32\actskin4.ocx
HKLM\Software\Classes\CLSID\{A506EF88-9EFC-4522-BFE1-A8E886A64D80}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{A5704C37-40DA-49EF-904B-97E5F5F9B1C5}\InprocServer32 : %WinDir%\System32\actskin4.ocx
HKLM\Software\Classes\CLSID\{A5704C37-40DA-49EF-904B-97E5F5F9B1C5}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{B87799AF-2CE9-4DAA-93CF-65F002035369}\InprocServer32 : %WinDir%\System32\actskin4.ocx
HKLM\Software\Classes\CLSID\{B87799AF-2CE9-4DAA-93CF-65F002035369}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{BBC73C94-337C-43CC-B52C-31EB9FA34013}\InprocServer32 : %WinDir%\System32\actskin4.ocx
HKLM\Software\Classes\CLSID\{BBC73C94-337C-43CC-B52C-31EB9FA34013}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{BDD1F04B-858B-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{BDD1F04B-858B-11D1-B16A-00C0F0283628}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{C27CCE32-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{C27CCE33-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{C27CCE34-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{C27CCE35-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{C27CCE36-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{C27CCE37-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{C27CCE38-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{C27CCE39-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{C27CCE3A-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{C27CCE3B-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{C27CCE3C-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{C27CCE3D-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{C27CCE3E-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{C27CCE3F-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{C27CCE40-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{C27CCE41-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{C27CCE42-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{C406F816-318D-4F7D-81CB-BA93CA7B70D5}\InprocServer32 : %WinDir%\System32\actskin4.ocx
HKLM\Software\Classes\CLSID\{C406F816-318D-4F7D-81CB-BA93CA7B70D5}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{C74190B6-8589-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{C74190B6-8589-11D1-B16A-00C0F0283628}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{D502D4A3-03E6-4EAE-A14E-69606CA63430}\InprocServer32 : %WinDir%\System32\actskin4.ocx
HKLM\Software\Classes\CLSID\{D502D4A3-03E6-4EAE-A14E-69606CA63430}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{DD9DA666-8594-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{DD9DA666-8594-11D1-B16A-00C0F0283628}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{EC22770D-3343-4C56-8A8D-3E560475F655}\InprocServer32 : %WinDir%\System32\actskin4.ocx
HKLM\Software\Classes\CLSID\{EC22770D-3343-4C56-8A8D-3E560475F655}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{F08DF954-8592-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\Mscomctl.ocx
HKLM\Software\Classes\CLSID\{F08DF954-8592-11D1-B16A-00C0F0283628}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{F9043C85-F6F2-101A-A3C9-08002B2F49FB}\InprocServer32 : %WinDir%\System32\COMDLG32.OCX
HKLM\Software\Classes\CLSID\{F9043C85-F6F2-101A-A3C9-08002B2F49FB}\InprocServer32\ThreadingModel: Apartment