21437C.SYS – Trojan Artemis

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

21437C.SYS – Trojan Artemis removal

FileMD5Virus Alias
21437C.SYS d90360be325fb53a5588b72dea12ac93 Trojan Artemis
21437C.SYS d90360be325fb53a5588b72dea12ac93 Trojan Ransom
21437C.SYS d90360be325fb53a5588b72dea12ac93 Trojan Generic
21437C.SYS d90360be325fb53a5588b72dea12ac93 Trojan Downloader
21437C.SYS d90360be325fb53a5588b72dea12ac93 Trojan Panda
21437C.SYS d90360be325fb53a5588b72dea12ac93 Trojan CI

21437C.SYS size: 33408 bytes
21437C.SYS hash: D90360BE325FB53A5588B72DEA12AC93

Created files:

%SysDir%\drivers\21437c.sys
%Temp%\Gobuu\naox.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\21437c\Type: 01000000
HKLM\System\CurrentControlSet\Services\21437c\Start: 01000000
HKLM\System\CurrentControlSet\Services\21437c\DisplayName: naox.exe
HKLM\System\CurrentControlSet\Services\21437c\ImagePath: %WinDir%\System32\drivers\21437c.sys
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Naox: “%Temp%\Gobuu\naox.exe”

Detected by UnHackMe:

21437C.SYS
Default location: %SYSDIR%\DRIVERS\21437C.SYS

Dropper information:
MD5: a989b3edcc6c043bf63d361be6afead8
File size: 642560 bytes

Leave a Reply