Worm Palevo – 23055C38.sys – 2e4eb048bee904b253edba279de53b62

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Worm Palevo
Also known as: Backdoor Hupigon, Trojan Jorik
SHA256: 071ea0cf25019179697a90def51a7839202a4a13a8e215aa231ad5697b98eba7
SHA1: b86c4a9a995c572f04f9690f31a3f0e95e7a6156
MD5: 2e4eb048bee904b253edba279de53b62
File size: 110080 bytes

Created files:

%SysDir%\23055C38.sys – Worm Palevo

Worm Palevo created autostart registry keys:

HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0010409\Layout File: KBDUS.DLL
HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0010409\Layout Text: 75A97018
HKLM\System\CurrentControlSet\Services\23055C38\Type: 01000000
HKLM\System\CurrentControlSet\Services\23055C38\Start: 02000000
HKLM\System\CurrentControlSet\Services\23055C38\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\23055C38\DisplayName: 23055C38
HKLM\System\CurrentControlSet\Services\23055C38\ImagePath: %WinDir%\System32\23055C38.sys
HKLM\System\CurrentControlSet\Services\bits\SBIE_StartTicks: EC2E0E00

Leave a Reply