HW32.Packed.2EE2

Dmitry Sokolov recommends UnHackMe!

UnHackMe is a powerful tool against malware.

UnHackMe quickly removes rootkits/malware/adware/browser hijack issues!

: Solved! 5 Stars (5 / 5)

Malware Analysis of HW32.Packed.2EE2 – VBOXZ.DLL

Created files:

%Program Files Common%\Vbox\Common\VboxMIMEcheck.ocx
%Program Files Common%\Vbox\Common\vboxr.dll
%Program Files Common%\Vbox\Common\vboxz.dll
%Program Files Common%\Vbox\Data\ACD_Systems-03.27.2015-08.42.19.box
%Program Files Common%\Vbox\Installers\ACD_Systems_ACDSee_Classic_2.44\setup.exe

Autostart registry keys:

HKLM\Software\Classes\CLSID\{6EA78E2E-D4FF-11D3-9544-00A0CC532DDD}\InprocServer32\: “%Program Files Common%\Vbox\Common\VboxCOMProxy.dll”
HKLM\Software\Classes\CLSID\{991A254E-11B4-11D4-9546-00A0CC532DDD}\InprocServer32\: “%Program Files Common%\Vbox\Common\VboxMIMEcheck.ocx”
HKLM\Software\Classes\CLSID\{CDAD12E2-D7E9-11D3-9544-00A0CC532DDD}\InprocServer32\: “%Program Files Common%\Vbox\Common\VboxCOMProxy.dll”
HKLM\Software\Classes\Vbox Box File\shell\open\command\: “%Program Files Common%\Vbox\Common\VboxHelper.exe %1”

Detected by UnHackMe:

VBOXZ.DLL
Default location: %PROGRAM FILES COMMON%\VBOX\COMMON\VBOXZ.DLL

Dropper hash(md5): 2f27c7c289e8f968340bc57ef660d855

Written by 

Malware Hunter.

UnHackMe removes malware invisible for your antivirus!

Free Download

1
UnHackMe is compatible with most antivirus software.
UnHackMe is 100% CLEAN, which means it does not contain any form of malware, including adware, spyware, viruses, trojans and backdoors. VirusTotal (0/56).
System Requirements: Windows 2000-Windows 8.1/10. UnHackMe uses minimum of computer resources.

WordPress SEO fine-tune by Meta SEO Pack from Poradnik Webmastera