WMI.DLL – Trojan Banker

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

WMI.DLL – Trojan Banker removal

FileMD5Virus Alias
WMI.DLL 4f3c9777a8e46414bdfebc8be3fe32b1 Trojan Banker
WMI.DLL 4f3c9777a8e46414bdfebc8be3fe32b1 Suspicious File
WMI.DLL 4f3c9777a8e46414bdfebc8be3fe32b1 Trojan Generic
WMI.DLL 4f3c9777a8e46414bdfebc8be3fe32b1 Trojan Agent
WMI.DLL 4f3c9777a8e46414bdfebc8be3fe32b1 Trojan Delf
WMI.DLL 4f3c9777a8e46414bdfebc8be3fe32b1 Trojan Bradop

WMI.DLL size: 911360 bytes
WMI.DLL hash: 4F3C9777A8E46414BDFEBC8BE3FE32B1

Created files:

%WinDir%\ehome\wmi.dll
%TEMP%\~3B

Autostart registry keys:

HKLM\Software\Classes\CLSID\{43C23DF6-F501-4B06-B7A5-B38D94A18E00}\InprocServer32 : %WinDir%\ehome\wmi.dll

Detected by UnHackMe:

WMI.DLL
Default location: %WinDir%\EHOME\WMI.DLL

Dropper information:
MD5: ca5cc94385e9da43c81aa0156f5e8257
File size: 84480 bytes

Leave a Reply