We checked some samples of EPOINT.EXE and detected the file EPOINT.EXE as threat.
Remove the EPOINT.EXE file from your computer right now.
Removal tool: http://www.unhackme.com
Malware Analysis of EPOINT.EXE
Full path on a computer: %SysDir%\Epoint.exe
Detected by UnHackMe:
EPOINT.EXE
Default location: %SysDir%\Epoint.exe
Removal Results: Success
Number of reboot: 1
EPOINT.EXE is known as:
Trojan.Olympus, Trojan.Autoit.Banker, Win32.VB.OGL
EPOINT.EXE hash:
- MD5: a229815238c968455cbb405386a44965
How to quickly detect EPOINT.EXE presence?
Registry:
- HKLM\System\CurrentControlSet\Services\Apointer\ImagePath: “%SysDir%\Epoint.exe”
- HKLM\System\CurrentControlSet\Services\Apointer\DisplayName: “point Seguraridad Service”
- HKCU\Software\Microsoft\Windows\CurrentVersion\Run\cespa: “%SysDir%\dwwm.exe”
Files:
- %Temp%\a229815238c968455cbb405386a44965.pdf
- %SysDir%\Apoint.exe
- %SysDir%\dwwm.exe
- %SysDir%\Epoint.exe