43E674.SYS – Trojan Downloader

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

43E674.SYS – Trojan Downloader removal

FileMD5Virus Alias
43E674.SYS 0a6701e5a99a51f36e033ff38c43dba8 Trojan Downloader
43E674.SYS 0a6701e5a99a51f36e033ff38c43dba8 Trojan SuspiciousFile
43E674.SYS 0a6701e5a99a51f36e033ff38c43dba8 Trojan Generic
43E674.SYS 0a6701e5a99a51f36e033ff38c43dba8 Trojan CI
43E674.SYS 0a6701e5a99a51f36e033ff38c43dba8 Trojan Agent
43E674.SYS 0a6701e5a99a51f36e033ff38c43dba8 Trojan Kryptik

43E674.SYS size: 33920 bytes
43E674.SYS hash: 0A6701E5A99A51F36E033FF38C43DBA8

Created files:

%SysDir%\drivers\43e674.sys
%Temp%\Wiiti\cyor.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\43e674\Type: 01000000
HKLM\System\CurrentControlSet\Services\43e674\Start: 01000000
HKLM\System\CurrentControlSet\Services\43e674\DisplayName: cyor.exe
HKLM\System\CurrentControlSet\Services\43e674\ImagePath: %WinDir%\System32\drivers\43e674.sys
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Cyor: “%Temp%\Wiiti\cyor.exe”

Detected by UnHackMe:

43E674.SYS
Default location: %SYSDIR%\DRIVERS\43E674.SYS

Dropper information:
MD5: fd916455f03020bfd411043a7bade896
File size: 591360 bytes

Leave a Reply