The file DARWIN.DLL is malware related.
You must delete the file DARWIN.DLL immediately!
Delete the file DARWIN.DLL without delay!
Kill the process DARWIN.DLL and remove DARWIN.DLL from the Windows startup.
Malware Analysis of DARWIN.DLL
Full path on a computer: %WinDir%\Darwin.dll
Detected by UnHackMe:
DARWIN.DLL
Default location: %WinDir%\Darwin.dll
Removal Results: Success
Number of reboot: 1
DARWIN.DLL is known as:
Trojan.Bancos, TR.Spy.Bancos.OSO.1, a variant of Win32.Spy.Bancos.OSO, Trojan-PWS.Banker6, W32.Bancos.OSO.tr.spy, PSW.Banker6.BFOB, Trojan.Bancos.OSO, Win32.Trojan.Spy.550
DARWIN.DLL hash:
- MD5: da9905bbcec59a731354ed421cabee4e
The file tries to connect to the dangerous web site.
How to quickly detect DARWIN.DLL presence?
Registry:
- HKLM\Software\Classes\CLSID\{3EB33522-958E-4F2C-A431-63A33ABC505B}\InprocServer32\: “%WinDir%\Darwin.dll”
Files:
- %Appdata%\Microsoft\Protect\S-1-5-21-1659004503-1708537768-1801674531-500\7a0f26ce-c90d-46b5-96e4-4ffff8ea5137
- %WinDir%\Darwin.dll