WENZI.EXE – Trojan Artemis

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

WENZI.EXE – Trojan Artemis removal

FileMD5Virus Alias
WENZI.EXE 3709ae4a4c17b2027ceaf8320733f292 Trojan Artemis
WENZI.EXE 3709ae4a4c17b2027ceaf8320733f292 Trojan BadReputation
WENZI.EXE 3709ae4a4c17b2027ceaf8320733f292 Trojan Generic
WENZI.EXE 3709ae4a4c17b2027ceaf8320733f292 Trojan Downloader
WENZI.EXE 3709ae4a4c17b2027ceaf8320733f292 Trojan Agent

WENZI.EXE size: 61440 bytes
WENZI.EXE hash: 3709AE4A4C17B2027CEAF8320733F292

Created files:

%SysDir%\Wenzi.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Windows Test My Test 1.0\Type: 10000000
HKLM\System\CurrentControlSet\Services\Windows Test My Test 1.0\Start: 02000000
HKLM\System\CurrentControlSet\Services\Windows Test My Test 1.0\DisplayName: Windows Test My Test Server 1.0
HKLM\System\CurrentControlSet\Services\Windows Test My Test 1.0\ImagePath: %WinDir%\System32\Wenzi.exe
HKLM\System\CurrentControlSet\Services\Windows Test My Test 1.0\Description: This is Windows Test My Test Server 1.0

Detected by UnHackMe:

WENZI.EXE
Default location: %SYSDIR%\WENZI.EXE

Dropper information:
MD5: 3709ae4a4c17b2027ceaf8320733f292
File size: 61440 bytes

Leave a Reply