1CB840.SYS – Trojan Downloader

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

1CB840.SYS – Trojan Downloader removal

FileMD5Virus Alias
1CB840.SYS 3970fb26714f8c50a9b125f86f6cd195 Trojan Downloader
1CB840.SYS 3970fb26714f8c50a9b125f86f6cd195 Trojan Generic

1CB840.SYS size: 56320 bytes
1CB840.SYS hash: 3970FB26714F8C50A9B125F86F6CD195

Created files:

%SysDir%\drivers\1cb840.sys
%Temp%\Uzba\eskek.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\1cb840\Type: 01000000
HKLM\System\CurrentControlSet\Services\1cb840\Start: 01000000
HKLM\System\CurrentControlSet\Services\1cb840\DisplayName: eskek.exe
HKLM\System\CurrentControlSet\Services\1cb840\ImagePath: %WinDir%\System32\drivers\1cb840.sys
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Eskek: “%Temp%\Uzba\eskek.exe”

Detected by UnHackMe:

1CB840.SYS
Default location: %SYSDIR%\DRIVERS\1CB840.SYS

Dropper information:
MD5: 4294dfe2d03144e6e08159fa52e3eb82
File size: 492904 bytes

Leave a Reply