Solved! Use TDA.EXE (KeyLogger Ardamax) Removal Guide

I will tell you in this post how to fix the issue manually and how to clean it automatically using a special powerful removal tool. You can download the removal program for free here:

Manual removal instructions:

TDA.EXE – KeyLogger Ardamax removal

File MD5 Virus Alias
TDA.EXE f3819a6cab8ae058254c4abb3844d87e KeyLogger Ardamax
TDA.EXE f3819a6cab8ae058254c4abb3844d87e Trojan (Suspicious File)
TDA.EXE f3819a6cab8ae058254c4abb3844d87e Trojan Artemis
TDA.EXE f3819a6cab8ae058254c4abb3844d87e Trojan Downloader
TDA.EXE f3819a6cab8ae058254c4abb3844d87e Trojan Agent

TDA.EXE size: 1748480 bytes
TDA.EXE hash: F3819A6CAB8AE058254C4ABB3844D87E

Created files:

%SysDir%\DCCEGF\TDA.001
%SysDir%\DCCEGF\TDA.002
%SysDir%\DCCEGF\TDA.003
%SysDir%\DCCEGF\TDA.004
%SysDir%\DCCEGF\TDA.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\TDA Start: %WinDir%\System32\DCCEGF\TDA.exe

Detected by UnHackMe:

TDA.EXE
Default location: %SYSDIR%\DCCEGF\TDA.EXE

Dropper information:
MD5: 6a1b21281c07f4ec9638a13bb548700b
File size: 1093632 bytes