SECURX86.SYS – Trojan Artemis

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SECURX86.SYS – Trojan Artemis removal

FileMD5Virus Alias
SECURX86.SYS 0bfc8e7fa0b026a8bf51bbea3d766890 Trojan Artemis
SECURX86.SYS 0bfc8e7fa0b026a8bf51bbea3d766890 Trojan SuspiciousFile
SECURX86.SYS 0bfc8e7fa0b026a8bf51bbea3d766890 Trojan Generic
SECURX86.SYS 0bfc8e7fa0b026a8bf51bbea3d766890 Trojan Agent
SECURX86.SYS 0bfc8e7fa0b026a8bf51bbea3d766890 Trojan Small

SECURX86.SYS size: 12056 bytes
SECURX86.SYS hash: 0BFC8E7FA0B026A8BF51BBEA3D766890

Created files:

%SysDir%\agil.jkd
%SysDir%\paport.dll
%SysDir%\securx86.bin
%SysDir%\securx86.exe
%SysDir%\securx86.sys

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\securx86: %WinDir%\System32\securx86.exe
HKLM\System\CurrentControlSet\Services\EpsonK200\Type: 01000000
HKLM\System\CurrentControlSet\Services\EpsonK200\Start: 03000000
HKLM\System\CurrentControlSet\Services\EpsonK200\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\EpsonK200\DisplayName: EpsonK200
HKLM\System\CurrentControlSet\Services\EpsonK200\ImagePath: %WinDir%\System32\securx86.sys

Detected by UnHackMe:

SECURX86.SYS
Default location: %SYSDIR%\SECURX86.SYS

Dropper information:
MD5: ca33e1826f8d03ed2c11fba563ca3bbb
File size: 4207 bytes

Leave a Reply