SLAVE.EXE – Trojan Artemis

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SLAVE.EXE – Trojan Artemis removal

FileMD5Virus Alias
SLAVE.EXE bcde5773469a598da89a3620f5f71529 Trojan Artemis
SLAVE.EXE bcde5773469a598da89a3620f5f71529 Trojan SuspiciousFile
SLAVE.EXE bcde5773469a598da89a3620f5f71529 Trojan Generic
SLAVE.EXE bcde5773469a598da89a3620f5f71529 Adware RemoteAdmin
SLAVE.EXE bcde5773469a598da89a3620f5f71529 Trojan DNAScan
SLAVE.EXE bcde5773469a598da89a3620f5f71529 Trojan Agent

SLAVE.EXE size: 84722 bytes
SLAVE.EXE hash: BCDE5773469A598DA89A3620F5F71529

Created files:

%WinDir%\Slave.exe

Autostart registry keys:

HKLM\HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\LanmanServer\Parameters\RestrictNullSessAccess: 02000000
HKLM\System\CurrentControlSet\Services\EventLog\Application\Slave\EventMessageFile: 45003A005C00420043004400450035003700370033003400360039004100350039003800440041003800390041003300360032003000460035004600370031003500320039002E004500580045000000
HKLM\System\CurrentControlSet\Services\EventLog\Application\Slave\TypesSupported: 07000000
HKLM\System\CurrentControlSet\Services\Slave\Type: 10010000
HKLM\System\CurrentControlSet\Services\Slave\Start: 02000000
HKLM\System\CurrentControlSet\Services\Slave\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\Slave\DisplayName: RA Server
HKLM\System\CurrentControlSet\Services\Slave\ImagePath: %WinDir%\Slave.exe

Detected by UnHackMe:

SLAVE.EXE
Default location: %WinDir%\SLAVE.EXE

Dropper information:
MD5: bcde5773469a598da89a3620f5f71529
File size: 84722 bytes

Leave a Reply