IZQHZQHYQH.DLL – Trojan Bancos

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

IZQHZQHYQH.DLL – Trojan Bancos removal

FileMD5Virus Alias
IZQHZQHYQH.DLL e27f993dc15ed8a4b4629c596c7a5a42 Trojan Bancos
IZQHZQHYQH.DLL e27f993dc15ed8a4b4629c596c7a5a42 Trojan Click
IZQHZQHYQH.DLL e27f993dc15ed8a4b4629c596c7a5a42 Trojan Agent
IZQHZQHYQH.DLL e27f993dc15ed8a4b4629c596c7a5a42 Trojan Delf

IZQHZQHYQH.DLL size: 735232 bytes
IZQHZQHYQH.DLL hash: E27F993DC15ED8A4B4629C596C7A5A42

Created files:

%SysDir%\BSJBULC.DLL
%SysDir%\CULDWNF.EXE
%SysDir%\IZQHZQHYQH.DLL
%SysDir%\LBTKTICTMEZ.AAB
%SysDir%\ma8gPDyg.dll
%SysDir%\TKBSKBSKBTKBSJ.OKC
%SysDir%\XPHZS.DLL
%SysDir%\YQIARJ.DLL

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\ServerPanle\Type: 10010000
HKLM\System\CurrentControlSet\Services\ServerPanle\Start: 02000000
HKLM\System\CurrentControlSet\Services\ServerPanle\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\ServerPanle\DisplayName: WinServerPanle
HKLM\System\CurrentControlSet\Services\ServerPanle\ImagePath: %WinDir%\System32\CULDWNF.EXE

Detected by UnHackMe:

IZQHZQHYQH.DLL
Default location: %SYSDIR%\IZQHZQHYQH.DLL

Dropper information:
MD5: 1e3a4d1102073e5c93d90789b5211e71
File size: 804352 bytes

Leave a Reply