NETUI.DLL – Trojan Agent

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

NETUI.DLL – Trojan Agent removal

FileMD5Virus Alias
NETUI.DLL aa3e6af90c144112a1ad0c19bdf873ff Trojan Agent
NETUI.DLL aa3e6af90c144112a1ad0c19bdf873ff Trojan Generic

NETUI.DLL size: 37376 bytes

Created files:

%SysDir%\netui.dll
%TEMP%\conhost.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Network User Interface\Type: 10010000
HKLM\System\CurrentControlSet\Services\Network User Interface\Start: 02000000
HKLM\System\CurrentControlSet\Services\Network User Interface\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\Network User Interface\DisplayName: Network User Interface
HKLM\System\CurrentControlSet\Services\Network User Interface\ImagePath: %WinDir%\System32\svchost.exe -k NtShvcs
HKLM\System\CurrentControlSet\Services\Network User Interface\Parameters\ServiceDll: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C006E0065007400750069002E0064006C006C000000
HKLM\System\CurrentControlSet\Services\Network User Interface\Parameters\ServiceDllUnloadOnStop: 01000000

Detected by UnHackMe:

NETUI.DLL
Default location: %SYSDIR%\NETUI.DLL

Dropper information:
MD5: 66f368cab3d5e64475a91f636c87af15
File size: 80388 bytes

Leave a Reply