HOOK32.DLL – Trojan Bancos

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

HOOK32.DLL – Trojan Bancos removal

FileMD5Virus Alias
HOOK32.DLL c7f24effd1eb885417c129844cd02386 Trojan Bancos
HOOK32.DLL c7f24effd1eb885417c129844cd02386 Trojan Agent

HOOK32.DLL size: 408576 bytes
HOOK32.DLL hash: C7F24EFFD1EB885417C129844CD02386

Created files:

%Program Files%\Hook32.dll
%Program Files%\win.exe
%Program Files%\zui.exe
%SysDir%\MySPI.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\WS2IFSL\Type: 01000000
HKLM\System\CurrentControlSet\Services\WS2IFSL\Start: 01000000
HKLM\System\CurrentControlSet\Services\WS2IFSL\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\WS2IFSL\DisplayName: Windows Socket 2.0 Non-IFS Service Provider Support Environment
HKLM\System\CurrentControlSet\Services\WS2IFSL\ImagePath: \SystemRoot\System32\drivers\ws2ifsl.sys

Detected by UnHackMe:

HOOK32.DLL
Default location: %PROGRAM FILES%\HOOK32.DLL

Dropper information:
MD5: e9bf0050a83da29233fe5c16fd5cde34
File size: 548721 bytes

Leave a Reply