Solved! Use SVCHOSTE.EXE (Trojan Artemis) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

SVCHOSTE.EXE – Trojan Artemis removal

File MD5 Virus Alias
SVCHOSTE.EXE 3bb39df895ae16ebc7a46c79d18201e8 Trojan Artemis
SVCHOSTE.EXE 3bb39df895ae16ebc7a46c79d18201e8 Trojan SuspiciousFile
SVCHOSTE.EXE 3bb39df895ae16ebc7a46c79d18201e8 Trojan Generic
SVCHOSTE.EXE 3bb39df895ae16ebc7a46c79d18201e8 Backdoor Nitol

SVCHOSTE.EXE size: 176128 bytes
SVCHOSTE.EXE hash: 3BB39DF895AE16EBC7A46C79D18201E8

Created files:

%SysDir%\drivers\etc\host
%SysDir%\svchoste.exe
%WinDir%\WindowsUpdate\ MSUpdate.exe
%WinDir%\WindowsUpdate\.temp.fortest
%WinDir%\WindowsUpdate\MSUpdate.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\MSUpdate.exe: %WinDir%\WindowsUpdate\MSUpdate.exe

Detected by UnHackMe:

SVCHOSTE.EXE
Default location: %SYSDIR%\SVCHOSTE.EXE

Dropper information:
MD5: 40e69fce55f0001d660d386b964b74c7
File size: 102400 bytes

Leave a Reply