UNK.004 – KeyLogger Ardamax

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

UNK.004 – KeyLogger Ardamax removal

FileVirus Alias
UNK.004 KeyLogger Ardamax
UNK.004 Trojan Generic
UNK.004 Trojan Downloader.Generic
UNK.004 Trojan Small
UNK.004 Trojan Agent

Created files:

%SysDir%\YKTKGE\AKV.exe – KeyLogger Ardamax
%SysDir%\YKTKGE\UNK.001 – KeyLogger Ardamax
%SysDir%\YKTKGE\UNK.002 – KeyLogger Ardamax
%SysDir%\YKTKGE\UNK.004 – KeyLogger Ardamax
%SysDir%\YKTKGE\UNK.exe – KeyLogger Ardamax

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\UNK Start: %WinDir%\System32\YKTKGE\UNK.exe

Detected by UnHackMe:

UNK.004
Default location: %SysDir%\YKTKGE\UNK.004

Dropper information:
SHA256: 5d0cae1dbd644bebd615ed4184c7798ab94bf21eb9bd3f9b252561fc44718d6f
SHA1: 1c847225bc536827cb61027ed55422fa5b60604b
MD5: cf44eefe937c310aba38c7106d353358
File size: 1208320 bytes

Leave a Reply