2875DC.SYS – Trojan Artemis

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

2875DC.SYS – Trojan Artemis removal

FileMD5Virus Alias
2875DC.SYS dee846e5d867c6c72d489b44ef7d905b Trojan Artemis
2875DC.SYS dee846e5d867c6c72d489b44ef7d905b Trojan SuspiciousFile
2875DC.SYS dee846e5d867c6c72d489b44ef7d905b Trojan Generic
2875DC.SYS dee846e5d867c6c72d489b44ef7d905b Trojan Downloader
2875DC.SYS dee846e5d867c6c72d489b44ef7d905b Trojan ZBot

2875DC.SYS size: 54528 bytes
2875DC.SYS hash: DEE846E5D867C6C72D489B44EF7D905B

Created files:

%SysDir%\drivers\2875dc.sys
%Temp%\Voupyp\ezohcu.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\2875dc\Type: 01000000
HKLM\System\CurrentControlSet\Services\2875dc\Start: 01000000
HKLM\System\CurrentControlSet\Services\2875dc\DisplayName: ezohcu.exe
HKLM\System\CurrentControlSet\Services\2875dc\ImagePath: %WinDir%\System32\drivers\2875dc.sys
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Ezohcu: “%Temp%\Voupyp\ezohcu.exe”

Detected by UnHackMe:

2875DC.SYS
Default location: %SYSDIR%\DRIVERS\2875DC.SYS

Dropper information:
MD5: 80ac5b9af50d534259562be119b0da69
File size: 450048 bytes

Leave a Reply