xunleijsq2.dll – Trojan Kazy

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

xunleijsq2.dll – Trojan Kazy removal

FileVirus Alias
xunleijsq2.dll Trojan Kazy
xunleijsq2.dll Trojan Generic
xunleijsq2.dll Trojan CI
xunleijsq2.dll Trojan AVKill
xunleijsq2.dll Trojan OnLineGames
xunleijsq2.dll Trojan PWS

Created files:

%SysDir%\xunleijsq2.dll – Trojan Kazy
%SysDir%\zmdll.lst – Trojan Kazy

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\WS2IFSL\Type: 01000000
HKLM\System\CurrentControlSet\Services\WS2IFSL\Start: 01000000
HKLM\System\CurrentControlSet\Services\WS2IFSL\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\WS2IFSL\DisplayName: Windows Socket 2.0 Non-IFS Service Provider Support Environment
HKLM\System\CurrentControlSet\Services\WS2IFSL\ImagePath: \SystemRoot\System32\drivers\ws2ifsl.sys

Detected by UnHackMe:

xunleijsq2.dll
Default location: %SysDir%\xunleijsq2.dll

Dropper information:
SHA256: 84325f2f4e721cffe033fe4c4fe880c69b8f2791e72ec4e0b617b24b29181a65
SHA1: 996f5c2ca8ea021a9f5cc90695ca328a6cc2cecb
MD5: dc6f656d509ca2385311f28631b43053
File size: 1324032 bytes

Leave a Reply