Solved! Use NETFILTER2.SYS (Trojan Artemis) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

NETFILTER2.SYS – Trojan Artemis removal

FileMD5Virus Alias
NETFILTER2.SYS ff5d8ded15411d7ff64bbd9d1633066e Trojan Artemis
NETFILTER2.SYS ff5d8ded15411d7ff64bbd9d1633066e Adware – Unwanted Program
NETFILTER2.SYS ff5d8ded15411d7ff64bbd9d1633066e Trojan Agent

NETFILTER2.SYS size: 57720 bytes
NETFILTER2.SYS hash: FF5D8DED15411D7FF64BBD9D1633066E

Created files:

%Program Files%\filter2\1\driver_installer\downloadfile.vbs
%Program Files%\filter2\1\driver_installer\downloadsp.vbs
%Program Files%\filter2\1\driver_installer\driver\tdi\amd64\netfilter2.sys
%Program Files%\filter2\1\driver_installer\driver\tdi\i386\netfilter2.sys
%Program Files%\filter2\1\driver_installer\driver\wfp\windows7\amd64\netfilter2.sys
%Program Files%\filter2\1\driver_installer\driver\wfp\windows7\i386\netfilter2.sys
%Program Files%\filter2\1\driver_installer\driver\wfp\windows8\amd64\netfilter2.sys
%Program Files%\filter2\1\driver_installer\driver\wfp\windows8\i386\netfilter2.sys
%Program Files%\filter2\1\driver_installer\driver_installer.exe
%Program Files%\filter2\1\driver_installer\win32\nfapi.dll
%Program Files%\filter2\1\driver_installer\win32\nfregdrv.exe
%Program Files%\filter2\1\driver_installer\Windows6.0-KB2763674-x64.msu
%Program Files%\filter2\1\driver_installer\Windows6.0-KB2763674-x86.msu
%Program Files%\filter2\1\driver_installer\x64\nfapi.dll
%Program Files%\filter2\1\driver_installer\x64\nfregdrv.exe
%Program Files%\filter2\2\CppWindowsService.exe
%Program Files%\filter2\2\driver_installer.exe
%Program Files%\filter2\2\libeay32.dll
%Program Files%\filter2\2\nfapi.dll
%Program Files%\filter2\2\nss\certutil.exe
%Program Files%\filter2\2\nss\mozcrt19.dll
%Program Files%\filter2\2\nss\nspr4.dll
%Program Files%\filter2\2\nss\nss3.dll
%Program Files%\filter2\2\nss\plc4.dll
%Program Files%\filter2\2\nss\plds4.dll
%Program Files%\filter2\2\nss\smime3.dll
%Program Files%\filter2\2\nss\softokn3.dll
%Program Files%\filter2\2\PFHttpContentFilter.exe
%Program Files%\filter2\2\ProtocolFilters.dll
%Program Files%\filter2\2\ssleay32.dll

Detected by UnHackMe:

NETFILTER2.SYS
Default location: %PROGRAM FILES%\FILTER2\1\DRIVER_INSTALLER\DRIVER\TDI\I386\NETFILTER2.SYS

Dropper information:
MD5: 288dc97d103ee0e76f54039768e2039d
File size: 3176000 bytes

Leave a Reply