DOU.EXE – Trojan Artemis

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

DOU.EXE – Trojan Artemis removal

FileMD5Virus Alias
DOU.EXE 410c31513e0e4abb7c5ade7a7360aa52 Trojan Artemis
DOU.EXE 410c31513e0e4abb7c5ade7a7360aa52 Trojan DLOADER
DOU.EXE 410c31513e0e4abb7c5ade7a7360aa52 Trojan SuspiciousFile
DOU.EXE 410c31513e0e4abb7c5ade7a7360aa52 Trojan Eldorado
DOU.EXE 410c31513e0e4abb7c5ade7a7360aa52 Trojan OnLineGames

DOU.EXE size: 22016 bytes
DOU.EXE hash: 410C31513E0E4ABB7C5ADE7A7360AA52

Created files:

%SysDir%\asianlan8.dll
%SysDir%\dllcache\ksuser.dll
%SysDir%\yuksuser.dll
%SysDir%\yumidimap.dll
%TEMP%\dou.exe
%TEMP%\tlmf.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0200804\Ime File: CHINASOUGOU.IME
HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0200804\Layout Text: ???(???)
HKLM\System\CurrentControlSet\Control\Keyboard Layouts\E0200804\Layout File: kbdus.dll
HKLM\System\CurrentControlSet\Services\cryptsvc\Start: 04000000

Detected by UnHackMe:

DOU.EXE
Default location: %TEMP%\DOU.EXE

Dropper information:
MD5: a50a5bda256d76357bb39886b3093b81
File size: 272384 bytes

Leave a Reply