288FCC.SYS – Trojan Artemis

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

288FCC.SYS – Trojan Artemis removal

FileMD5Virus Alias
288FCC.SYS 4dd92d1bd1ccc825adb47e0c57746e94 Trojan Artemis
288FCC.SYS 4dd92d1bd1ccc825adb47e0c57746e94 Trojan Generic
288FCC.SYS 4dd92d1bd1ccc825adb47e0c57746e94 Trojan Downloader
288FCC.SYS 4dd92d1bd1ccc825adb47e0c57746e94 Trojan CI

288FCC.SYS size: 57216 bytes
288FCC.SYS hash: 4DD92D1BD1CCC825ADB47E0C57746E94

Created files:

%SysDir%\drivers\288fcc.sys
%Temp%\Jeabyt\apokk.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\288fcc\Type: 01000000
HKLM\System\CurrentControlSet\Services\288fcc\Start: 01000000
HKLM\System\CurrentControlSet\Services\288fcc\DisplayName: apokk.exe
HKLM\System\CurrentControlSet\Services\288fcc\ImagePath: %WinDir%\System32\drivers\288fcc.sys
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Apokk: “%Temp%\Jeabyt\apokk.exe”

Detected by UnHackMe:

288FCC.SYS
Default location: %SYSDIR%\DRIVERS\288FCC.SYS

Dropper information:
MD5: 9e4a1a2d1ad01f3a426b0d9b878e27cc
File size: 406528 bytes

Leave a Reply