Solved! Use SYSTEM.EXE (Trojan Artemis) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SYSTEM.EXE – Trojan Artemis removal

FileMD5Virus Alias
SYSTEM.EXE b8273987b3b2706fe122e76ab3a21bfd Trojan Artemis
SYSTEM.EXE b8273987b3b2706fe122e76ab3a21bfd Trojan SuspiciousFile
SYSTEM.EXE b8273987b3b2706fe122e76ab3a21bfd Trojan Win32-Spy
SYSTEM.EXE b8273987b3b2706fe122e76ab3a21bfd Trojan Eldorado
SYSTEM.EXE b8273987b3b2706fe122e76ab3a21bfd Trojan Downloader
SYSTEM.EXE b8273987b3b2706fe122e76ab3a21bfd Trojan Agent

SYSTEM.EXE size: 21504 bytes
SYSTEM.EXE hash: B8273987B3B2706FE122E76AB3A21BFD

Created files:

%WinDir%\InstallDir\system.exe

Autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{5460C4DF-B266-909E-CB58-E32B79832EB2}\StubPath: 43003A005C00570049004E0044004F00570053005C0049006E007300740061006C006C004400690072005C00730079007300740065006D002E00650078006500200072006500730074006100720074000000
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\HKLM: 43003A005C00570049004E0044004F00570053005C0049006E007300740061006C006C004400690072005C00730079007300740065006D002E006500780065000000
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\HKCU: 43003A005C00570049004E0044004F00570053005C0049006E007300740061006C006C004400690072005C00730079007300740065006D002E006500780065000000

Detected by UnHackMe:

SYSTEM.EXE
Default location: %WinDir%\INSTALLDIR\SYSTEM.EXE

Dropper information:
MD5: b8273987b3b2706fe122e76ab3a21bfd
File size: 21504 bytes

Leave a Reply