AHNURLA.SYS – Trojan Agent

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

AHNURLA.SYS – Trojan Agent removal

FileMD5Virus Alias
AHNURLA.SYS f38e3317bac9fa801a2b09379a0f4e6c Trojan Agent
AHNURLA.SYS f38e3317bac9fa801a2b09379a0f4e6c Trojan Generic
AHNURLA.SYS f38e3317bac9fa801a2b09379a0f4e6c Trojan CI

AHNURLA.SYS size: 36736 bytes
AHNURLA.SYS hash: F38E3317BAC9FA801A2B09379A0F4E6C

Created files:

%WinDir%\svchost.exe
%SysDir%\drivers\ahnurla.sys

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\ahnurla\Type: 01000000
HKLM\System\CurrentControlSet\Services\ahnurla\Start: 02000000
HKLM\System\CurrentControlSet\Services\ahnurla\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\ahnurla\DisplayName: ahnurla
HKLM\System\CurrentControlSet\Services\ahnurla\ImagePath: %WinDir%\System32\drivers\ahnurla.sys

Detected by UnHackMe:

AHNURLA.SYS
Default location: %SYSDIR%\DRIVERS\AHNURLA.SYS

Dropper information:
MD5: 12f3081357e43dc101037dbe7907f827
File size: 100864 bytes

Leave a Reply