439E71CE7225865.SYS – Trojan Xema

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

439E71CE7225865.SYS – Trojan Xema removal

FileMD5Virus Alias
439E71CE7225865.SYS 52d38a65b8092f687379d7d9bf67743d Trojan Xema

439E71CE7225865.SYS size: 16256 bytes
439E71CE7225865.SYS hash: 52D38A65B8092F687379D7D9BF67743D

Created files:

%WinDir%\temp\439E71CE7225865.sys

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\439E71CE7225865\Type: 01000000
HKLM\System\CurrentControlSet\Services\439E71CE7225865\Start: 03000000
HKLM\System\CurrentControlSet\Services\439E71CE7225865\DisplayName: 439E71CE7225865
HKLM\System\CurrentControlSet\Services\439E71CE7225865\ImagePath: %WinDir%\temp\439E71CE7225865.sys
HKLM\System\CurrentControlSet\Services\439E71CE7225865.sys\ImagePath: \??\%WinDir%\temp\439E71CE7225865.sys
HKLM\System\CurrentControlSet\Services\439E71CE7225865.sys\Type: 01000000

Detected by UnHackMe:

439E71CE7225865.SYS
Default location: %TEMP%\439E71CE7225865.SYS

Dropper information:
MD5: ca0f1ff649aa38b2585afe01e8d40560
File size: 97792 bytes

Leave a Reply