ICFIAFOV.SYS – Worm AMN

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

ICFIAFOV.SYS – Worm AMN removal

FileMD5Virus Alias
ICFIAFOV.SYS ecfc6e4eb3ee71ff8d0444c479f710b8 Worm AMN
ICFIAFOV.SYS ecfc6e4eb3ee71ff8d0444c479f710b8 Trojan Generic
ICFIAFOV.SYS ecfc6e4eb3ee71ff8d0444c479f710b8 Trojan Eldorado
ICFIAFOV.SYS ecfc6e4eb3ee71ff8d0444c479f710b8 Trojan Agent

ICFIAFOV.SYS size: 14336 bytes
ICFIAFOV.SYS hash: ECFC6E4EB3EE71FF8D0444C479F710B8

Created files:

%TEMP%\icfiafov.sys

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Micorsoft Windows Service\Type: 01000000
HKLM\System\CurrentControlSet\Services\Micorsoft Windows Service\Start: 03000000
HKLM\System\CurrentControlSet\Services\Micorsoft Windows Service\DisplayName: Micorsoft Windows Service
HKLM\System\CurrentControlSet\Services\Micorsoft Windows Service\ImagePath: %TEMP%\icfiafov.sys

Detected by UnHackMe:

ICFIAFOV.SYS
Default location: %TEMP%\ICFIAFOV.SYS

Dropper information:
MD5: 040a432567dd6eb017e59c2f0b706b4e
File size: 41984 bytes

Leave a Reply