BUNNDLEOFFERMANAGER.DLL

June 6, 2012 by NightWatcher
Filed under: unknown 
: Solved!

Fix it immediately:

BUNNDLEOFFERMANAGER.DLL is unknown, probably legitimate.
If the file BUNNDLEOFFERMANAGER.DLL is located on your computer, download UnHackMe for free to fix the problem with BUNNDLEOFFERMANAGER.DLL.

Malware Analysis of BUNNDLEOFFERMANAGER.DLL
Full path on a computer: %Temp%\Bunndle\BunndleOfferManager.dll

Detected by UnHackMe:

BUNNDLEOFFERMANAGER.DLL
Default location: %Temp%\Bunndle\BunndleOfferManager.dll

Removal Results: Success
Number of reboot: 1

BUNNDLEOFFERMANAGER.DLL hash:

  • MD5: f8f7820b4336e61b40ca67418dacc7ba
The file tries to connect to the dangerous web site.
How to quickly detect BUNNDLEOFFERMANAGER.DLL presence?

Registry:
  • KLM\Software\Classes\CLSID\{FA6DC595-39EE-45E6-BC91-1E4D385ABB11}\VersionIndependentProgID\: “Bunndle.BunndleOfferManager”
  • HKLM\Software\Classes\CLSID\{FA6DC595-39EE-45E6-BC91-1E4D385ABB11}\InprocServer32\: “%Temp%\BunndleOfferManager.dll”
  • HKLM\Software\Classes\Interface\{253B2114-DE9E-42A9-9C73-533E24FC788E}\: “IBunndleOfferManager”
  • HKLM\Software\Classes\TypeLib\{BE75CD6E-0AC6-4D57-ACDD-48FD1ADB7711}\1.0\0\win32\: “%Temp%\BunndleOfferManager.dll”
Folders:
  • %Appdata%\uTorrent
  • %Appdata%\uTorrent\Cache
  • %Temp%\Bunndle
Files:
  • %Appdata%\uTorrent\settings.dat
  • %Appdata%\uTorrent\settings.dat.old
  • %Temp%\Bunndle\Bunndle.log
  • %Temp%\Bunndle\BunndleOfferManager.dll
  • %Temp%\BunndleOfferManager.dll
  • %Temp%\utt1.tmp
  • %Temp%\utt1.tmp.old


Recommended: UnHackMe anti-rootkit and anti-malware

Premium software: RegRun Security Suite (Good choice for removal and protection)

Written by

Malware Hunter.

Comments

Tell me what you're thinking...
and oh, if you want a pic to show with your comment, go get a gravatar!

You must be logged in to post a comment.