Dmitry Sokolov recommends UnHackMe!
UnHackMe is a powerful tool against malware.UnHackMe quickly removes rootkits/malware/adware/browser hijack issues!
Trojan.Win32.NtRootKit.cvgwrk also known as Trojan.NtRootKit.3689, Win32/Cryptor, Win-Trojan/Agent.27648.KZ.
Malware Analysis of Trojan.Win32.NtRootKit.cvgwrk – AEVOI.SYS
Created files:
%SYSDIR%\DRIVERS\AEVOI.SYS
%SYSDIR%\PIBU.DLL
Autostart registry keys:
HKLM\System\CurrentControlSet\services\emowih\ImagePath: “system32\drivers\aevoi.sys”
HKLM\System\CurrentControlSet\services\emowih\DisplayName: “emowih”
Detected by UnHackMe:
AEVOI.SYS
Default location: %SYSDIR%\DRIVERS\AEVOI.SYS
Dropper hash(md5): bf65f0e8e560b7462466483fa0d85147
UnHackMe
removes malware invisible for your antivirus!
UnHackMe is 100% CLEAN, which means it does not contain any form of malware, including adware, spyware, viruses, trojans and backdoors. VirusTotal (0/56).
System Requirements: Windows 2000-Windows 8.1/10. UnHackMe uses minimum of computer resources.