DOWIRE.sys – Trojan Comisproc

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

DOWIRE.sys – Trojan Comisproc removal

FileVirus Alias
DOWIRE.sys Trojan Comisproc
DOWIRE.sys Worm AMN
DOWIRE.sys Trojan CI
DOWIRE.sys Trojan Agent
DOWIRE.sys Trojan Downloader.Generic

Created files:

C:\Windows\System32\Dowire\z3.exe – Trojan Comisproc
C:\Windows\System32\DOWIRE.sys – Trojan Comisproc

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\DOWIRE\Type: 01000000
HKLM\System\CurrentControlSet\Services\DOWIRE\Start: 03000000
HKLM\System\CurrentControlSet\Services\DOWIRE\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\DOWIRE\DisplayName: DOWIRE
HKLM\System\CurrentControlSet\Services\DOWIRE\ImagePath: C:\Windows\System32\DOWIRE.sys

Detected by UnHackMe:

DOWIRE.sys
Default location: C:\Windows\System32\DOWIRE.sys

Dropper information:
SHA256: 69753a2d50615fa95071f469ecfba46c70a6cb72ec2bdd17b3f391c82efe09a2
SHA1: 22bc540a132d07b587c3c8b16e5f8701e9cb3b2c
MD5: 259c78778eb3363b9832db2f85ae035f
File size: 218112 bytes

Leave a Reply