00002A4CT8SETUP.EXE – Trojan Artemis

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

00002A4CT8SETUP.EXE – Trojan Artemis removal

FileMD5Virus Alias
00002A4CT8SETUP.EXE 5faf18ed4900b0f2e0112cfa5cc6c7d7 Trojan Artemis
00002A4CT8SETUP.EXE 5faf18ed4900b0f2e0112cfa5cc6c7d7 Adware FunWeb

00002A4CT8SETUP.EXE size: 8587648 bytes
00002A4CT8SETUP.EXE hash: 5FAF18ED4900B0F2E0112CFA5CC6C7D7

Created files:

%Program Files%\CouponXplorer_5z\bar\1.bin\5zauxstb.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zbar.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zbarsvc.exe
%Program Files%\CouponXplorer_5z\bar\1.bin\5zbprtct.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zbrmon.exe
%Program Files%\CouponXplorer_5z\bar\1.bin\5zbrstub.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zdatact.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zdlghk.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zdyn.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zfeedmg.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zhighin.exe
%Program Files%\CouponXplorer_5z\bar\1.bin\5zhkstub.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zhtmlmu.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zhttpct.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zidle.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zieovr.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zimpipe.exe
%Program Files%\CouponXplorer_5z\bar\1.bin\5zmedint.exe
%Program Files%\CouponXplorer_5z\bar\1.bin\5zmlbtn.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zmsg.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zPlugin.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zradio.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zregfft.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zreghk.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zregiet.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zscript.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zskin.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zsknlcr.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zskplay.exe
%Program Files%\CouponXplorer_5z\bar\1.bin\5zSrcAs.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zSrchMn.exe
%Program Files%\CouponXplorer_5z\bar\1.bin\5ztpinst.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\5zuabtn.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\AppIntegrator64.exe
%Program Files%\CouponXplorer_5z\bar\1.bin\AppIntegratorStub64.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\CREXT.DLL
%Program Files%\CouponXplorer_5z\bar\1.bin\CrExtP5z.exe
%Program Files%\CouponXplorer_5z\bar\1.bin\Hpg64.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\NP5zStub.dll
%Program Files%\CouponXplorer_5z\bar\1.bin\T8EXTEX.DLL
%Program Files%\CouponXplorer_5z\bar\1.bin\T8EXTPEX.DLL
%Program Files%\CouponXplorer_5z\bar\1.bin\T8HTML.DLL
%Program Files%\CouponXplorer_5z\bar\1.bin\T8RES.DLL
%Program Files%\CouponXplorer_5z\bar\1.bin\T8TICKER.DLL
%TEMP%\00002a4cT8SETUP.EXE
%TEMP%\00002a4cT8SETUP.EX_

Detected by UnHackMe:

00002A4CT8SETUP.EXE
Default location: %TEMP%\00002A4CT8SETUP.EXE

Dropper information:
MD5: 90cc03a79e884fbd41b3a4da9bd91a39
File size: 3631488 bytes

Leave a Reply