SYSTEMWB.DLL – Trojan Eldorado

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SYSTEMWB.DLL – Trojan Eldorado removal

FileMD5Virus Alias
SYSTEMWB.DLL 2e6016325548ab79e2d636640c6ec473 Trojan Eldorado

SYSTEMWB.DLL size: 40960 bytes

Created files:

%SysDir%\1033\dwintl.dll
%SysDir%\12520437.cpx
%SysDir%\12520850.cpx
%SysDir%\6to4svc.dll
%SysDir%\aaaamon.dll
%SysDir%\aaclient.dll
%SysDir%\access.cpl
%SysDir%\acctres.dll
%SysDir%\accwiz.exe
%SysDir%\acledit.dll
%SysDir%\aclui.dll
%SysDir%\activeds.dll
%SysDir%\activeds.tlb
%SysDir%\actmovie.exe
%SysDir%\actxprxy.dll
%SysDir%\admparse.dll
%SysDir%\adptif.dll
%SysDir%\adsldp.dll
%SysDir%\adsldpc.dll
%SysDir%\adsmsext.dll
%SysDir%\adsnds.dll
%SysDir%\adsnt.dll
%SysDir%\adsnw.dll
%SysDir%\advapi32.dll
%SysDir%\advpack.dll
%SysDir%\advpack.dll.mui
%SysDir%\ahui.exe
%SysDir%\alg.exe
%SysDir%\alrsvc.dll
%SysDir%\amcompat.tlb
%SysDir%\amstream.dll
%SysDir%\ansi.sys
%SysDir%\apcups.dll
%SysDir%\append.exe
%SysDir%\apphelp.dll
%SysDir%\appmgmts.dll
%SysDir%\appmgr.dll
%SysDir%\appwiz.cpl
%SysDir%\arp.exe
%SysDir%\asctrls.ocx
%SysDir%\asferror.dll
%SysDir%\asr_fmt.exe
%SysDir%\asr_ldm.exe
%SysDir%\asr_pfu.exe
%SysDir%\asycfilt.dll
%SysDir%\at.exe
%SysDir%\atkctrs.dll
%SysDir%\atl.dll
%SysDir%\atmadm.exe
%SysDir%\atmfd.dll
%SysDir%\atmlib.dll
%SysDir%\atmpvcno.dll
%SysDir%\atrace.dll
%SysDir%\attrib.exe
%SysDir%\audiosrv.dll
%SysDir%\auditusr.exe
%SysDir%\authz.dll
%SysDir%\autochk.exe
%SysDir%\autoconv.exe
%SysDir%\autodisc.dll
%SysDir%\AUTOEXEC.NT
%SysDir%\autofmt.exe
%SysDir%\autolfn.exe
%SysDir%\avicap.dll
%SysDir%\avicap32.dll
%SysDir%\avifil32.dll
%SysDir%\avifile.dll
%SysDir%\avmeter.dll
%SysDir%\avtapi.dll
%SysDir%\avwav.dll
%SysDir%\pk.bin
%SysDir%\rinst.exe
%SysDir%\system.exe
%SysDir%\systemhk.dll
%SysDir%\systemwb.dll
%TEMP%\RarSFX0\pk.bin
%TEMP%\RarSFX0\rinst.exe
%TEMP%\RarSFX0\system.exe
%TEMP%\RarSFX0\systemhk.dll
%TEMP%\RarSFX0\systemwb.dll

Detected by UnHackMe:

SYSTEMWB.DLL
Default location: %SYSDIR%\SYSTEMWB.DLL

Dropper information:
MD5: 8b0126b1ae93deadeabebf2fe7427425
File size: 4116452 bytes

Leave a Reply