NSAVFLT.SYS – Trojan Artemis

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

NSAVFLT.SYS – Trojan Artemis removal

FileMD5Virus Alias
NSAVFLT.SYS dfc3dd9a1088ec20372c13297df81ae5 Trojan Artemis
NSAVFLT.SYS dfc3dd9a1088ec20372c13297df81ae5 Trojan Generic
NSAVFLT.SYS dfc3dd9a1088ec20372c13297df81ae5 Trojan Graftor

NSAVFLT.SYS size: 52736 bytes
NSAVFLT.SYS hash: DFC3DD9A1088EC20372C13297DF81AE5

Created files:

%SysDir%\nsavflt.sys

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\net8139\Type: 01000000
HKLM\System\CurrentControlSet\Services\net8139\Start: 02000000
HKLM\System\CurrentControlSet\Services\net8139\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\net8139\DisplayName: net8139
HKLM\System\CurrentControlSet\Services\net8139\ImagePath: %WinDir%\System32\nsavflt.sys

Detected by UnHackMe:

NSAVFLT.SYS
Default location: %SYSDIR%\NSAVFLT.SYS

Dropper information:
MD5: cfe4e04b98e3619079911f9f09696fef
File size: 96256 bytes

Leave a Reply