WARTV1~1.EXE – Trojan Artemis

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

WARTV1~1.EXE – Trojan Artemis removal

FileMD5Virus Alias
WARTV1~1.EXE 9e52158cd013bcccf3222abf55e803fb Trojan Artemis
WARTV1~1.EXE 9e52158cd013bcccf3222abf55e803fb Trojan SuspiciousFile
WARTV1~1.EXE 9e52158cd013bcccf3222abf55e803fb Trojan Generic
WARTV1~1.EXE 9e52158cd013bcccf3222abf55e803fb Trojan Xema
WARTV1~1.EXE 9e52158cd013bcccf3222abf55e803fb Trojan DNAScan
WARTV1~1.EXE 9e52158cd013bcccf3222abf55e803fb Trojan CI

WARTV1~1.EXE size: 155648 bytes
WARTV1~1.EXE hash: 9E52158CD013BCCCF3222ABF55E803FB

Created files:

%SysDir%\SVKP.sys
%TEMP%\IXP000.TMP\mm.EXE
%TEMP%\IXP000.TMP\WARTV1~1.EXE

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\SVKP\Type: 01000000
HKLM\System\CurrentControlSet\Services\SVKP\Start: 02000000
HKLM\System\CurrentControlSet\Services\SVKP\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\SVKP\DisplayName: SVKP
HKLM\System\CurrentControlSet\Services\SVKP\ImagePath: %WinDir%\System32\SVKP.sys

Detected by UnHackMe:

WARTV1~1.EXE
Default location: %TEMP%\IXP000.TMP\WARTV1~1.EXE

Dropper information:
MD5: 8885561e35e6b06c887cd72f834d54b5
File size: 576000 bytes

Leave a Reply