6272CD.SYS – Trojan Downloader

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

6272CD.SYS – Trojan Downloader removal

FileMD5Virus Alias
6272CD.SYS 7fd23e576f9a88ae550f309765cc690c Trojan Downloader
6272CD.SYS 7fd23e576f9a88ae550f309765cc690c Trojan Generic
6272CD.SYS 7fd23e576f9a88ae550f309765cc690c Trojan Agent

6272CD.SYS size: 58240 bytes
6272CD.SYS hash: 7FD23E576F9A88AE550F309765CC690C

Created files:

%SysDir%\drivers\6272cd.sys
%Temp%\Dumowo\saasab.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\6272cd\Type: 01000000
HKLM\System\CurrentControlSet\Services\6272cd\Start: 01000000
HKLM\System\CurrentControlSet\Services\6272cd\DisplayName: saasab.exe
HKLM\System\CurrentControlSet\Services\6272cd\ImagePath: %WinDir%\System32\drivers\6272cd.sys
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Saasab: “%Temp%\Dumowo\saasab.exe”

Detected by UnHackMe:

6272CD.SYS
Default location: %SYSDIR%\DRIVERS\6272CD.SYS

Dropper information:
MD5: 8eb7c9d7172c8e95b9b64b392495223d
File size: 496128 bytes

Leave a Reply