40B421.SYS – Trojan Artemis

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

40B421.SYS – Trojan Artemis removal

FileMD5Virus Alias
40B421.SYS 48e464e19294975e2bcc8c18da9cb338 Trojan Artemis
40B421.SYS 48e464e19294975e2bcc8c18da9cb338 Trojan SuspiciousFile
40B421.SYS 48e464e19294975e2bcc8c18da9cb338 Trojan Generic
40B421.SYS 48e464e19294975e2bcc8c18da9cb338 Trojan Kryptik

40B421.SYS size: 54016 bytes
40B421.SYS hash: 48E464E19294975E2BCC8C18DA9CB338

Created files:

%SysDir%\drivers\40b421.sys
%Temp%\Gataa\haawym.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\40b421\Type: 01000000
HKLM\System\CurrentControlSet\Services\40b421\Start: 01000000
HKLM\System\CurrentControlSet\Services\40b421\DisplayName: haawym.exe
HKLM\System\CurrentControlSet\Services\40b421\ImagePath: %WinDir%\System32\drivers\40b421.sys
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Haawym: “%Temp%\Gataa\haawym.exe”

Detected by UnHackMe:

40B421.SYS
Default location: %SYSDIR%\DRIVERS\40B421.SYS

Dropper information:
MD5: c2aaa9270d58afa1b9ad35b03593e4a6
File size: 479744 bytes

Leave a Reply