FUJ.02 – KeyLogger Ardamax

I will tell you in this post how to fix the issue manually and how to clean it automatically using a special powerful removal tool. You can download the removal program for free here:

Manual removal instructions:

FUJ.02 – KeyLogger Ardamax removal

File MD5 Virus Alias
FUJ.02 df425ad8c4c4678892f4285b9d36285e KeyLogger Ardamax
FUJ.02 df425ad8c4c4678892f4285b9d36285e Trojan Generic
FUJ.02 df425ad8c4c4678892f4285b9d36285e Trojan Click
FUJ.02 df425ad8c4c4678892f4285b9d36285e Trojan Swizzor

FUJ.02 size: 56832 bytes
FUJ.02 hash: DF425AD8C4C4678892F4285B9D36285E

Created files:

%SysDir%\AMQBAA\FUJ.00
%SysDir%\AMQBAA\FUJ.01
%SysDir%\AMQBAA\FUJ.02
%SysDir%\AMQBAA\FUJ.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\FUJ Start: %WinDir%\System32\AMQBAA\FUJ.exe

Detected by UnHackMe:

FUJ.02
Default location: %SYSDIR%\AMQBAA\FUJ.02

Dropper information:
MD5: a62873e525b3f8d880e9966497bd7547
File size: 2082304 bytes