GKKA.007 – KeyLogger Ardamax

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

GKKA.007 – KeyLogger Ardamax removal

File MD5 Virus Alias
GKKA.007 49e240cd2e8fe880e177e208aaf8feea KeyLogger Ardamax
GKKA.007 49e240cd2e8fe880e177e208aaf8feea Trojan Agent

GKKA.007 size: 5632 bytes

Created files:

%SysDir%\Sys32\GKKA.001
%SysDir%\Sys32\GKKA.006
%SysDir%\Sys32\GKKA.007
%SysDir%\Sys32\GKKA.exe
%WinDir%\Temp\mspaint.exe
%WinDir%\Temp\pkvid.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\GKKA Agent: %WinDir%\System32\Sys32\GKKA.exe

Detected by UnHackMe:

GKKA.007
Default location: %SYSDIR%\SYS32\GKKA.007

Dropper information:
MD5: 3d57ebcbc1992d2b4e414ebf1c10aabf
File size: 549189 bytes

Leave a Reply