USBINCKEY.SYS – Trojan Artemis

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

USBINCKEY.SYS – Trojan Artemis removal

FileMD5Virus Alias
USBINCKEY.SYS 352169ab21c2a2b930f26011412c30f3 Trojan Artemis
USBINCKEY.SYS 352169ab21c2a2b930f26011412c30f3 Trojan Generic
USBINCKEY.SYS 352169ab21c2a2b930f26011412c30f3 Trojan Graftor
USBINCKEY.SYS 352169ab21c2a2b930f26011412c30f3 Trojan Agent

USBINCKEY.SYS size: 9856 bytes
USBINCKEY.SYS hash: 352169AB21C2A2B930F26011412C30F3

Created files:

%SysDir%\cardctrl.exe
%SysDir%\drivers\usbinckey.sys
%SysDir%\usbinckey.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\cardctrl\Type: 10000000
HKLM\System\CurrentControlSet\Services\cardctrl\Start: 02000000
HKLM\System\CurrentControlSet\Services\cardctrl\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\cardctrl\DisplayName: Windows Cards Manager
HKLM\System\CurrentControlSet\Services\cardctrl\ImagePath: %WinDir%\System32\cardctrl.exe
HKLM\System\CurrentControlSet\Services\usbinckey\Type: 01000000
HKLM\System\CurrentControlSet\Services\usbinckey\Start: 01000000
HKLM\System\CurrentControlSet\Services\usbinckey\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\usbinckey\DisplayName: usbinckey
HKLM\System\CurrentControlSet\Services\usbinckey\ImagePath: System32\drivers\usbinckey.sys

Detected by UnHackMe:

USBINCKEY.SYS
Default location: %SYSDIR%\DRIVERS\USBINCKEY.SYS

Dropper information:
MD5: 035627263fac59f11125b93d0e5d6279
File size: 78336 bytes

Leave a Reply