GEI33.DLL – Trojan Sinowal

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

GEI33.DLL – Trojan Sinowal removal

FileMD5Virus Alias
GEI33.DLL 6c13cc0ebe4560652d4f9e1941f4b59f Trojan Sinowal
GEI33.DLL 6c13cc0ebe4560652d4f9e1941f4b59f Trojan Eldorado
GEI33.DLL 6c13cc0ebe4560652d4f9e1941f4b59f Backdoor RBot
GEI33.DLL 6c13cc0ebe4560652d4f9e1941f4b59f Trojan Downloader
GEI33.DLL 6c13cc0ebe4560652d4f9e1941f4b59f Trojan Graftor
GEI33.DLL 6c13cc0ebe4560652d4f9e1941f4b59f Backdoor Nitol

GEI33.DLL size: 9728 bytes
GEI33.DLL hash: 6C13CC0EBE4560652D4F9E1941F4B59F

Created files:

%SysDir%\gei33.dll
%SysDir%\lcvdcy.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\aspnet_states\Type: 10000000
HKLM\System\CurrentControlSet\Services\aspnet_states\Start: 02000000
HKLM\System\CurrentControlSet\Services\aspnet_states\DisplayName: ASP.NET State Services
HKLM\System\CurrentControlSet\Services\aspnet_states\ImagePath: %WinDir%\System32\lcvdcy.exe
HKLM\System\CurrentControlSet\Services\aspnet_states\Description: Provides support for out-of-to-process

Detected by UnHackMe:

GEI33.DLL
Default location: %SYSDIR%\GEI33.DLL

Dropper information:
MD5: 39a4c9e6d33894bf43552ccabe7773d7
File size: 80896 bytes

Leave a Reply