Solved! Use PROTECTSYS.SYS (Trojan Agent) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

PROTECTSYS.SYS – Trojan Agent removal

FileMD5Virus Alias
PROTECTSYS.SYS 907c8dcd64495489891e8917bac57fc6 Trojan Agent
PROTECTSYS.SYS 907c8dcd64495489891e8917bac57fc6 Trojan, Suspicious File
PROTECTSYS.SYS 907c8dcd64495489891e8917bac57fc6 Trojan Artemis
PROTECTSYS.SYS 907c8dcd64495489891e8917bac57fc6 Trojan Generic
PROTECTSYS.SYS 907c8dcd64495489891e8917bac57fc6 Trojan Graftor

PROTECTSYS.SYS size: 42496 bytes
PROTECTSYS.SYS hash: 907C8DCD64495489891E8917BAC57FC6

Created files:

%SysDir%\drivers\Protectsys.sys
%Common Startmenu%\Programs\Startup\91ni???????.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Protectsys\Type: 01000000
HKLM\System\CurrentControlSet\Services\Protectsys\Start: 03000000
HKLM\System\CurrentControlSet\Services\Protectsys\DisplayName: Protectsys
HKLM\System\CurrentControlSet\Services\Protectsys\ImagePath: %WinDir%\System32\drivers\Protectsys.sys

Detected by UnHackMe:

PROTECTSYS.SYS
Default location: %SYSDIR%\DRIVERS\PROTECTSYS.SYS

Dropper information:
MD5: 606ea63d7b623cc4695b2b7c861e9bdb
File size: 199680 bytes

Leave a Reply