EWIKY.DLL – Backdoor Koutodoor

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

EWIKY.DLL – Backdoor Koutodoor removal

File MD5 Virus Alias
EWIKY.DLL d0e9161ff75a5b62baac609f3046367b Backdoor Koutodoor
EWIKY.DLL d0e9161ff75a5b62baac609f3046367b Trojan Generic
EWIKY.DLL d0e9161ff75a5b62baac609f3046367b Trojan Eldorado
EWIKY.DLL d0e9161ff75a5b62baac609f3046367b Trojan Adload
EWIKY.DLL d0e9161ff75a5b62baac609f3046367b Trojan StartPage
EWIKY.DLL d0e9161ff75a5b62baac609f3046367b Trojan Crypt

EWIKY.DLL size: 57344 bytes
EWIKY.DLL hash: D0E9161FF75A5B62BAAC609F3046367B

Created files:

%SysDir%\drivers\buvaeu.sys
%SysDir%\ewiky.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\buvaeu\Type: 01000000
HKLM\System\CurrentControlSet\Services\buvaeu\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\buvaeu\DisplayName: buvaeu
HKLM\System\CurrentControlSet\Services\buvaeu\ImagePath: 730079007300740065006D00330032005C0064007200690076006500720073005C006200750076006100650075002E007300790073000000

Detected by UnHackMe:

EWIKY.DLL
Default location: %SYSDIR%\EWIKY.DLL

Dropper information:
MD5: 2dc34188760347e15848ae1677c88f38
File size: 89856 bytes

Leave a Reply