Solved! Use ARP+.EXE (Trojan Artemis) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

ARP+.EXE – Trojan Artemis removal

File MD5 Virus Alias
ARP+.EXE ecb836bd8b2bfd17c45d7a976322f3ae Trojan Artemis
ARP+.EXE ecb836bd8b2bfd17c45d7a976322f3ae Trojan (Suspicious File)
ARP+.EXE ecb836bd8b2bfd17c45d7a976322f3ae Trojan Generic
ARP+.EXE ecb836bd8b2bfd17c45d7a976322f3ae Trojan Downloader
ARP+.EXE ecb836bd8b2bfd17c45d7a976322f3ae Trojan Agent
ARP+.EXE ecb836bd8b2bfd17c45d7a976322f3ae Trojan StartPage

ARP+.EXE size: 8704 bytes
ARP+.EXE hash: ECB836BD8B2BFD17C45D7A976322F3AE

Created files:

C:\Documents and Settings\Administrator\Favorites\Fixed_Directory_Name\UnicodeFile.bin
C:\Documents and Settings\Administrator\Favorites\Fixed_Directory_Name\UnicodeFile_1.bin
C:\Documents and Settings\Administrator\Favorites\Fixed_Directory_Name\UnicodeFile_2.bin
C:\Documents and Settings\Administrator\Fixed_Directory_Name\UnicodeFile.bin
%WinDir%\arp+.exe
%WinDir%\DriverFire.exe
%WinDir%\FireDll.dll
%WinDir%\ie.exe
%WinDir%\run.vbs
%SYSDIR%\ie.exe
%SYSDIR%\IE_BHO.dll
%SYSDIR%\MainPro.exe
%WinDir%\UpSys.exe
%WinDir%\zm.exe

Detected by UnHackMe:

ARP+.EXE
Default location: %WinDir%\ARP+.EXE

Dropper information:
MD5: c5dad691ced225bcfc8af40fb42536a3
File size: 2311535 bytes

Leave a Reply