FUJ.01 – KeyLogger Ardamax

I will tell you in this post how to fix the issue manually and how to clean it automatically using a special powerful removal tool. You can download the removal program for free here:

Manual removal instructions:

FUJ.01 – KeyLogger Ardamax removal

File MD5 Virus Alias
FUJ.01 6839ad5adbaf7107eb50aac7ef210b4e KeyLogger Ardamax
FUJ.01 6839ad5adbaf7107eb50aac7ef210b4e Trojan Generic

FUJ.01 size: 81920 bytes
FUJ.01 hash: 6839AD5ADBAF7107EB50AAC7EF210B4E

Created files:

%SysDir%\AMQBAA\FUJ.00
%SysDir%\AMQBAA\FUJ.01
%SysDir%\AMQBAA\FUJ.02
%SysDir%\AMQBAA\FUJ.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\FUJ Start: %WinDir%\System32\AMQBAA\FUJ.exe

Detected by UnHackMe:

FUJ.01
Default location: %SYSDIR%\AMQBAA\FUJ.01

Dropper information:
MD5: a62873e525b3f8d880e9966497bd7547
File size: 2082304 bytes