MSSCHEDSVC.DLL – Trojan Artemis

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

MSSCHEDSVC.DLL – Trojan Artemis removal

FileMD5Virus Alias
MSSCHEDSVC.DLL 8192cc6512076c16dc35840c9e283c91 Trojan Artemis
MSSCHEDSVC.DLL 8192cc6512076c16dc35840c9e283c91 Trojan SuspiciousFile
MSSCHEDSVC.DLL 8192cc6512076c16dc35840c9e283c91 Trojan Generic
MSSCHEDSVC.DLL 8192cc6512076c16dc35840c9e283c91 Trojan CI
MSSCHEDSVC.DLL 8192cc6512076c16dc35840c9e283c91 Trojan Agent

MSSCHEDSVC.DLL size: 148992 bytes
MSSCHEDSVC.DLL hash: 8192CC6512076C16DC35840C9E283C91

Created files:

%SysDir%\msschedsvc.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\6to4\SBIE_Win32ExitCode: 02000000
HKLM\System\CurrentControlSet\Services\Schedulekit\Type: 20000000
HKLM\System\CurrentControlSet\Services\Schedulekit\Start: 02000000
HKLM\System\CurrentControlSet\Services\Schedulekit\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\Schedulekit\DisplayName: Schedulekit
HKLM\System\CurrentControlSet\Services\Schedulekit\ImagePath: %SystemRoot%\System32\svchost.exe -k netsvcs
HKLM\System\CurrentControlSet\Services\Schedulekit\Parameters\ServiceDll: 2500530079007300740065006D0052006F006F00740025005C00730079007300740065006D00330032005C006D007300730063006800650064007300760063002E0064006C006C000000
HKLM\System\CurrentControlSet\Services\Schedulekit\Parameters\ServiceMain: ServiceMain

Detected by UnHackMe:

MSSCHEDSVC.DLL
Default location: %SYSDIR%\MSSCHEDSVC.DLL

Dropper information:
MD5: 912c43b9671155f239f6652b879025e8
File size: 210432 bytes

Leave a Reply