WIN32UI.PYD – Trojan SuspiciousFile

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

WIN32UI.PYD – Trojan SuspiciousFile removal

FileMD5Virus Alias
WIN32UI.PYD af219a9c076fdd0b8cc10fa0b895444f Trojan SuspiciousFile

WIN32UI.PYD size: 174080 bytes
WIN32UI.PYD hash: AF219A9C076FDD0B8CC10FA0B895444F

Created files:

%TEMP%\_MEI109282\bz2.pyd
%TEMP%\_MEI109282\mfc90.dll
%TEMP%\_MEI109282\mfc90u.dll
%TEMP%\_MEI109282\mfcm90.dll
%TEMP%\_MEI109282\mfcm90u.dll
%TEMP%\_MEI109282\msvcm90.dll
%TEMP%\_MEI109282\msvcp90.dll
%TEMP%\_MEI109282\msvcr90.dll
%TEMP%\_MEI109282\pyHook._cpyHook.pyd
%TEMP%\_MEI109282\pysqlite2._sqlite.pyd
%TEMP%\_MEI109282\python26.dll
%TEMP%\_MEI109282\pythoncom26.dll
%TEMP%\_MEI109282\PyWinTypes26.dll
%TEMP%\_MEI109282\select.pyd
%TEMP%\_MEI109282\support\gen_py\__init__.py
%TEMP%\_MEI109282\unicodedata.pyd
%TEMP%\_MEI109282\win32api.pyd
%TEMP%\_MEI109282\win32evtlog.pyd
%TEMP%\_MEI109282\win32file.pyd
%TEMP%\_MEI109282\win32trace.pyd
%TEMP%\_MEI109282\win32ui.pyd
%TEMP%\_MEI109282\win32wnet.pyd
%TEMP%\_MEI109282\_bsddb.pyd
%TEMP%\_MEI109282\_ctypes.pyd
%TEMP%\_MEI109282\_hashlib.pyd
%TEMP%\_MEI109282\_imaging.pyd
%TEMP%\_MEI109282\_socket.pyd
%TEMP%\_MEI109282\_ssl.pyd
%TEMP%\_MEI109282\_win32sysloader.pyd

Detected by UnHackMe:

WIN32UI.PYD
Default location: %TEMP%\_MEI109282\WIN32UI.PYD

Dropper information:
MD5: 77c7c0117a0e457d7e3ceef4ab82c2ca
File size: 5296588 bytes

Leave a Reply