DIRTYDECRYPT.EXE – Trojan Artemis

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

DIRTYDECRYPT.EXE – Trojan Artemis removal

FileMD5Virus Alias
DIRTYDECRYPT.EXE 2127e13bc1fa6618ddddadba36722d29 Trojan Artemis
DIRTYDECRYPT.EXE 2127e13bc1fa6618ddddadba36722d29 Trojan PAK_Generic
DIRTYDECRYPT.EXE 2127e13bc1fa6618ddddadba36722d29 Trojan Agent
DIRTYDECRYPT.EXE 2127e13bc1fa6618ddddadba36722d29 Trojan Crypt

DIRTYDECRYPT.EXE size: 24576 bytes
DIRTYDECRYPT.EXE hash: 2127E13BC1FA6618DDDDADBA36722D29

Created files:

%Program Files%\Dirty\DirtyDecrypt.exe
%Program Files%\microsoft frontpage\yJjPJWhi.exe
%AppData%\Dirty\DirtyDecrypt.exe
%Local AppData%\Dirty\DirtyDecrypt.exe
%Local AppData%\Microsoft\BovXdYyO.exe
%SysDir%\config\systemprofile\Start Menu\Programs\Startup\sdmmVYnN.exe
%TEMP%\OLCjeUbW.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit: %WinDir%\System32\userinit.exe,,%Program Files%\Microsoft frontpage\yJjPJWhi.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\AkjsDDLS: %WinDir%\System32\config\Systemprofile\Local Settings\Application Data\Microsoft\BovXdYyO.exe

Detected by UnHackMe:

DIRTYDECRYPT.EXE
Default location: %PROGRAM FILES%\DIRTY\DIRTYDECRYPT.EXE

Dropper information:
MD5: 3164b4ad546b098df01a0df24a325b3a
File size: 253952 bytes

Leave a Reply