NJFMP.FON – Trojan Artemis

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

NJFMP.FON – Trojan Artemis removal

FileMD5Virus Alias
NJFMP.FON 6fa26db29d840ed56577ed12ccbd954e Trojan Artemis
NJFMP.FON 6fa26db29d840ed56577ed12ccbd954e Trojan Generic
NJFMP.FON 6fa26db29d840ed56577ed12ccbd954e Trojan Eldorado
NJFMP.FON 6fa26db29d840ed56577ed12ccbd954e Trojan Buzus
NJFMP.FON 6fa26db29d840ed56577ed12ccbd954e Worm Autorun
NJFMP.FON 6fa26db29d840ed56577ed12ccbd954e Trojan Agent

NJFMP.FON size: 6912 bytes
NJFMP.FON hash: 6FA26DB29D840ED56577ED12CCBD954E

Created files:

%WinDir%\Fonts\njfmp.fon
%WinDir%\Fonts\ocbi.fon

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\DrvKiller\Type: 01000000
HKLM\System\CurrentControlSet\Services\DrvKiller\Start: 03000000
HKLM\System\CurrentControlSet\Services\DrvKiller\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\DrvKiller\DisplayName: DrvKiller
HKLM\System\CurrentControlSet\Services\DrvKiller\ImagePath: %WinDir%\Fonts\njfmp.fon

Detected by UnHackMe:

NJFMP.FON
Default location: %WinDir%\FONTS\NJFMP.FON

Dropper information:
MD5: 04369ac2fbbf6aee494e9208fe560908
File size: 98816 bytes

Leave a Reply