OLEADVAPI32.DLL – Trojan Agent

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

OLEADVAPI32.DLL – Trojan Agent removal

FileMD5Virus Alias
OLEADVAPI32.DLL d1782106b81464ce0866772d4f494a87 Trojan Agent
OLEADVAPI32.DLL d1782106b81464ce0866772d4f494a87 Trojan SuspiciousFile
OLEADVAPI32.DLL d1782106b81464ce0866772d4f494a87 Trojan Generic
OLEADVAPI32.DLL d1782106b81464ce0866772d4f494a87 Trojan Downloader
OLEADVAPI32.DLL d1782106b81464ce0866772d4f494a87 Trojan CI
OLEADVAPI32.DLL d1782106b81464ce0866772d4f494a87 Worm AMN

OLEADVAPI32.DLL size: 166912 bytes
OLEADVAPI32.DLL hash: D1782106B81464CE0866772D4F494A87

Created files:

%WinDir%\System32\oleadvapi32.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\6to4\SBIE_Win32ExitCode: 02000000
HKLM\System\CurrentControlSet\Services\Wmikit\Type: 20000000
HKLM\System\CurrentControlSet\Services\Wmikit\Start: 02000000
HKLM\System\CurrentControlSet\Services\Wmikit\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\Wmikit\DisplayName: Wmikit
HKLM\System\CurrentControlSet\Services\Wmikit\ImagePath: %SystemRoot%\System32\svchost.exe -k netsvcs
HKLM\System\CurrentControlSet\Services\Wmikit\Parameters\ServiceDll: 2500530079007300740065006D0052006F006F00740025005C00530079007300740065006D00330032005C006F006C006500610064007600610070006900330032002E0064006C006C000000
HKLM\System\CurrentControlSet\Services\Wmikit\Parameters\ServiceMain: ServiceMain

Detected by UnHackMe:

OLEADVAPI32.DLL
Default location: %SYSDIR%\OLEADVAPI32.DLL

Dropper information:
MD5: 758589df298cd282e904148520c88e98
File size: 309248 bytes

Leave a Reply