YFJ.002 – KeyLogger Ardamax

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

YFJ.002 – KeyLogger Ardamax removal

File MD5 Virus Alias
YFJ.002 93df156c4bd9d7341f4c4a4847616a69 KeyLogger Ardamax
YFJ.002 93df156c4bd9d7341f4c4a4847616a69 Worm AMN
YFJ.002 93df156c4bd9d7341f4c4a4847616a69 Trojan Small

YFJ.002 size: 44032 bytes
YFJ.002 hash: 93DF156C4BD9D7341F4C4A4847616A69

Created files:

%SysDir%\MRDCKV\AKV.exe
%SysDir%\MRDCKV\YFJ.001
%SysDir%\MRDCKV\YFJ.002
%SysDir%\MRDCKV\YFJ.004
%SysDir%\MRDCKV\YFJ.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\YFJ Start: %WinDir%\System32\MRDCKV\YFJ.exe

Detected by UnHackMe:

YFJ.002
Default location: %SYSDIR%\MRDCKV\YFJ.002

Dropper information:
MD5: 33917ecdefc510eca026ecbfc3d33ef1
File size: 1217024 bytes

Leave a Reply