imm32.dll, its unforeseeable evolution (1)

1. Introduction

Recently, spread of malicious file to steal Korean online game account information is prevalent in here.
Besides, this malicious file adopted these methods changing "imm32.dll" file, located in Windows folder, to new type of malicious file or generate itself.
Therefore, general user who plays online game needs to be careful of infection.

2. Spreading path and symptoms of infection

This case of spreading infected malicious file related normal imm32.dll patch is frequently found. And its techniques are various. One of these main purposes is giving financial damage of infected user. One of spread malicious file found lately is using vulnerability of IE and induces to leak personal information.

Currently, this malicious file is redirected from certain web site, and following image shows download window to be spread so far.

Upon execution downloaded "aa.exe", it will create additional malicious file on following path.
Furthermore, it will rename normal imm32.dll to another name and patch.

Normally patched malicious imm32.dll will try to leak user account information and forcibly stop to certain anti-virus software.

* Generated files

C:\WINDOWS\system32\imm32.dll (86,016 bytes, Malicious)
C:\WINDOWS\system32\imm32B.dll (86,016 bytes, Malicious)
C:\WINDOWS\system32\imm32A.dll (110,080 bytes, Normal)

* Comparison information between normal and malicious imm32.dlls

* Control flow of malicious file and patching imm32.dll

3. How to prevent

To use your PC safely from security threats of these malicious applications, we recommend following tips "Security management tips" for general users.

Security management tips

1. Maintain the latest security update on OS and applications
2. Use anti-virus SW from believable security company and keep updating the latest engine and using real time detecting function
3. Do not see and download attached file from suspicious e-mail.

INCA Internet (Security Response Center / Emergency Response Team) provides diagnosis/treatment function such as malicious file stated above and runs responding system 24 hours against various security threats.


  1. To write awesome character analysis essay you need to take a look at this blog article. You will be one of the best student in class

  2. This is a good post. Many thanks for such an incredible post and the survey, I am completely awed! Keep stuff like this coming. This post gives really quality data. I am unquestionably going to investigate it. Extremely exceptionally valuable tips are given here. Much thanks to you to such an extent. Keep up the kind acts. Take a look at website for best dissertation writing service.

  3. Thank you for this blog. I was about to sign up to first rate when this showed up in the results. I hope I can find something that can really help me out. I do not drive so an online work will be great.It really makes me happy and I am satisfied with the arrangement of your post. You are really a talented person I have ever seen.Geek Squad Tech Support visit for more information

  4. Finding the best Help with Medical Assignment is not easy unless one is keen to establish a professional medical assignment help & medical homework help online.

  5. Online e-commerce essay writing help services are very common nowadays since there are very many students seeking E-commerce Essay Writing Services and e-commerce research paper writing services.

  6. Airlines-gethuman.org is a platform where you can Find Contact Information for all the airlines, Assistance with booking your flights, and vacation packages easily. It helps you to save both, your money and your time.

    Southwest Airlines Reservations

    Southwest Airlines Flights

  7. To see who is going to become a millionaire from the Lottery Sambad result today, download today's Lottery Sambad result on this portal.After the bygone era, playing a lottery game is now an easy way to earn money in an exciting way.The lottery sambad Morning West Bengal State Lottery Nagaland state Lottery Kerala Lottery Result Kerala Lottery Today Result published three times a day, is a very quality lottery and Satta king results.


  8. Airlines-gethuman.org is a platform where you can Find Contact Information for all the airlines, Assistance with booking your flights, and vacation packages easily. It helps you to save both, your money and your time.
    delta airlines flight