WIN32DLL.DLL – Trojan XPACK

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

WIN32DLL.DLL – Trojan XPACK removal

FileMD5Virus Alias
WIN32DLL.DLL 53fb7ed1c9b1c66226ea9414d5f77dcd Trojan XPACK

WIN32DLL.DLL size: 61440 bytes
WIN32DLL.DLL hash: 53FB7ED1C9B1C66226EA9414D5F77DCD

Created files:

%SysDir%\MSCOMCTL.OCX
%SysDir%\QzDriverDog.dll
%SysDir%\SoftDogSetup.dll
%SysDir%\win32dll.dll

Autostart registry keys:

HKLM\Software\Classes\CLSID\{1EFB6596-857C-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{2C247F23-8591-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{35053A22-8589-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{66833FE6-8583-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{8E3867A3-8586-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{9EDE39FF-A3A0-4CAA-A5B2-CEDF46385CC5}\InprocServer32 : %WinDir%\System32\QzDriverDog.dll
HKLM\Software\Classes\CLSID\{BDD1F04B-858B-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{C27CCE32-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{C27CCE33-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{C27CCE34-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{C27CCE35-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{C27CCE36-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{C27CCE37-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{C27CCE38-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{C27CCE39-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{C27CCE3A-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{C27CCE3B-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{C27CCE3C-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{C27CCE3D-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{C27CCE3E-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{C27CCE3F-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{C27CCE40-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{C27CCE41-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{C27CCE42-8596-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{C74190B6-8589-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{DD9DA666-8594-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX
HKLM\Software\Classes\CLSID\{F08DF954-8592-11D1-B16A-00C0F0283628}\InprocServer32 : %WinDir%\System32\MSCOMCTL.OCX

Detected by UnHackMe:

WIN32DLL.DLL
Default location: %SYSDIR%\WIN32DLL.DLL

Dropper information:
MD5: bdbc578f93b28157368124151cc9befb
File size: 1823972 bytes

Leave a Reply