A0E71.SYS – Trojan Kryptik

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

A0E71.SYS – Trojan Kryptik removal

FileMD5Virus Alias
A0E71.SYS 174f2cca98b7a0b0b83ae23fd902524d Trojan Kryptik
A0E71.SYS 174f2cca98b7a0b0b83ae23fd902524d Trojan SuspiciousFile
A0E71.SYS 174f2cca98b7a0b0b83ae23fd902524d Trojan Generic
A0E71.SYS 174f2cca98b7a0b0b83ae23fd902524d Trojan Downloader
A0E71.SYS 174f2cca98b7a0b0b83ae23fd902524d Trojan CI
A0E71.SYS 174f2cca98b7a0b0b83ae23fd902524d Trojan Agent

A0E71.SYS size: 55808 bytes
A0E71.SYS hash: 174F2CCA98B7A0B0B83AE23FD902524D

Created files:

%SysDir%\drivers\a0e71.sys
%Temp%\Xomaeg\ewisu.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\a0e71\Type: 01000000
HKLM\System\CurrentControlSet\Services\a0e71\Start: 01000000
HKLM\System\CurrentControlSet\Services\a0e71\DisplayName: ewisu.exe
HKLM\System\CurrentControlSet\Services\a0e71\ImagePath: %WinDir%\System32\drivers\a0e71.sys
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Ewisu: “%Temp%\Xomaeg\ewisu.exe”

Detected by UnHackMe:

A0E71.SYS
Default location: %SYSDIR%\DRIVERS\A0E71.SYS

Dropper information:
MD5: 10511c23d2d9d638220146379fb1bfee
File size: 479744 bytes

Leave a Reply