Solved! Use AKV.EXE (KeyLogger Ardamax) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

AKV.EXE – KeyLogger Ardamax removal

File MD5 Virus Alias
AKV.EXE 0725c70d7b45945089905464a2710dc8 KeyLogger Ardamax
AKV.EXE 0725c70d7b45945089905464a2710dc8 Trojan SuspiciousFile
AKV.EXE 0725c70d7b45945089905464a2710dc8 Trojan Downloader
AKV.EXE 0725c70d7b45945089905464a2710dc8 Trojan CI

AKV.EXE size: 501248 bytes
AKV.EXE hash: 0725C70D7B45945089905464A2710DC8

Created files:

%SysDir%\YHCOHD\AKV.exe
%SysDir%\YHCOHD\GKR.001
%SysDir%\YHCOHD\GKR.002
%SysDir%\YHCOHD\GKR.004
%SysDir%\YHCOHD\GKR.005
%SysDir%\YHCOHD\GKR.008
%SysDir%\YHCOHD\GKR.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\GKR Start: %WinDir%\System32\YHCOHD\GKR.exe

Detected by UnHackMe:

AKV.EXE
Default location: %SYSDIR%\YHCOHD\AKV.EXE

Dropper information:
MD5: 72f2d18dddac329ee0123c9b03ec9298
File size: 1797632 bytes

Leave a Reply