EWERNU.DLL – Trojan Artemis

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

EWERNU.DLL – Trojan Artemis removal

FileMD5Virus Alias
EWERNU.DLL 566b920219ae025bc1e39df6cdadfc8b Trojan Artemis
EWERNU.DLL 566b920219ae025bc1e39df6cdadfc8b Trojan Generic
EWERNU.DLL 566b920219ae025bc1e39df6cdadfc8b Trojan MulDrop4
EWERNU.DLL 566b920219ae025bc1e39df6cdadfc8b Trojan Eldorado
EWERNU.DLL 566b920219ae025bc1e39df6cdadfc8b Trojan Downloader
EWERNU.DLL 566b920219ae025bc1e39df6cdadfc8b Rootkit TDSS

EWERNU.DLL size: 77824 bytes
EWERNU.DLL hash: 566B920219AE025BC1E39DF6CDADFC8B

Created files:

%Program Files%\AAV\CDriver.sys
%SysDir%\ewernu.dll
%SysDir%\muluou.dll
%SysDir%\system.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\aav\Type: 01000000
HKLM\System\CurrentControlSet\Services\aav\Start: 03000000
HKLM\System\CurrentControlSet\Services\aav\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\aav\DisplayName: aav
HKLM\System\CurrentControlSet\Services\aav\ImagePath: %Program Files%\\AAV\\CDriver.sys

Detected by UnHackMe:

EWERNU.DLL
Default location: %SYSDIR%\EWERNU.DLL

Dropper information:
MD5: 133c54c301ad342db8cff300c3ed23b1
File size: 834246 bytes

Leave a Reply