OLCJEUBW.EXE – Trojan Artemis

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

OLCJEUBW.EXE – Trojan Artemis removal

FileMD5Virus Alias
OLCJEUBW.EXE 6587e9f39e0eff08e25c912a633e8f37 Trojan Artemis
OLCJEUBW.EXE 6587e9f39e0eff08e25c912a633e8f37 Trojan FrauDrop
OLCJEUBW.EXE 6587e9f39e0eff08e25c912a633e8f37 Trojan SuspiciousFile
OLCJEUBW.EXE 6587e9f39e0eff08e25c912a633e8f37 Trojan Downloader
OLCJEUBW.EXE 6587e9f39e0eff08e25c912a633e8f37 Trojan CI
OLCJEUBW.EXE 6587e9f39e0eff08e25c912a633e8f37 Trojan Agent

OLCJEUBW.EXE size: 98304 bytes
OLCJEUBW.EXE hash: 6587E9F39E0EFF08E25C912A633E8F37

Created files:

%Program Files%\WindowsUpdate\fEREdQMr.exe
%Local AppData%\Microsoft\BovXdYyO.exe
%SysDir%\config\systemprofile\Start Menu\Programs\Startup\sdmmVYnN.exe
%TEMP%\OLCjeUbW.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit: %WinDir%\System32\userinit.exe,,%Program Files%\WindowsUpdate\fEREdQMr.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\AkjsDDLS: %WinDir%\System32\config\Systemprofile\Local Settings\Application Data\Microsoft\BovXdYyO.exe

Detected by UnHackMe:

OLCJEUBW.EXE
Default location: %TEMP%\OLCJEUBW.EXE

Dropper information:
MD5: 6587e9f39e0eff08e25c912a633e8f37
File size: 98304 bytes

Leave a Reply