Solved! Use GPKCSPP.DLL (Trojan Artemis) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

GPKCSPP.DLL – Trojan Artemis removal

File MD5 Virus Alias
GPKCSPP.DLL 4f489f02f37c802952aa2bdb82df8345 Trojan Artemis
GPKCSPP.DLL 4f489f02f37c802952aa2bdb82df8345 Trojan Downloader
GPKCSPP.DLL 4f489f02f37c802952aa2bdb82df8345 Trojan Agent

GPKCSPP.DLL size: 73728 bytes
GPKCSPP.DLL hash: 4F489F02F37C802952AA2BDB82DF8345

Created files:

%SysDir%\aaaammon.dll
%SysDir%\c_209055.nls
%SysDir%\c_7775.nls
%SysDir%\c_9550.nls
%SysDir%\c__037.nls
%SysDir%\c__21866.nls
%SysDir%\esentt.dll
%SysDir%\gpkcspp.dll
%SysDir%\synncapp.exe
%Temp%\aeon.fl2
%Temp%\IXP000.TMP\2269713053
%Temp%\IXP000.TMP\482329.dll
%Temp%\IXP000.TMP\BRX56300
%Temp%\IXP000.TMP\cvx0315
%Temp%\IXP000.TMP\OBX53130
%Temp%\IXP000.TMP\pens
%Temp%\IXP000.TMP\SecretsOfTheDark_EclipseMountain.exe
%Temp%\IXP000.TMP\SecretsOfTheDark_EclipseMountain.exe.dll
%Temp%\IXP000.TMP\SecretsOfTheDark_EclipseMountain.exe.dll.dll
%Temp%\IXP000.TMP\teepoedi
%Temp%\_SecretsOfTheDark_EclipseMountain.exe

Detected by UnHackMe:

GPKCSPP.DLL
Default location: %SYSDIR%\GPKCSPP.DLL

Dropper information:
MD5: 6e502c33adaa46d93cc34e0c17ab1564
File size: 3882496 bytes

Leave a Reply