GKKA.006 – KeyLogger Ardamax

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

GKKA.006 – KeyLogger Ardamax removal

File MD5 Virus Alias
GKKA.006 a08026db7b86f2ba69f6317a4a66778b KeyLogger Ardamax
GKKA.006 a08026db7b86f2ba69f6317a4a66778b Trojan Generic
GKKA.006 a08026db7b86f2ba69f6317a4a66778b Trojan Agent

GKKA.006 size: 7680 bytes

Created files:

%SysDir%\Sys32\GKKA.001
%SysDir%\Sys32\GKKA.006
%SysDir%\Sys32\GKKA.007
%SysDir%\Sys32\GKKA.exe
%WinDir%\Temp\mspaint.exe
%WinDir%\Temp\pkvid.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\GKKA Agent: %WinDir%\System32\Sys32\GKKA.exe

Detected by UnHackMe:

GKKA.006
Default location: %SYSDIR%\SYS32\GKKA.006

Dropper information:
MD5: 3d57ebcbc1992d2b4e414ebf1c10aabf
File size: 549189 bytes

Leave a Reply