Solved! Use WYCAIGK.EXE (Trojan Artemis) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

WYCAIGK.EXE – Trojan Artemis removal

FileMD5Virus Alias
WYCAIGK.EXE 2b24d3310a8982bf6c8f6494b933a391 Trojan Artemis
WYCAIGK.EXE 2b24d3310a8982bf6c8f6494b933a391 Trojan DLOADER
WYCAIGK.EXE 2b24d3310a8982bf6c8f6494b933a391 Trojan SuspiciousFile
WYCAIGK.EXE 2b24d3310a8982bf6c8f6494b933a391 Trojan Generic
WYCAIGK.EXE 2b24d3310a8982bf6c8f6494b933a391 Trojan Downloader
WYCAIGK.EXE 2b24d3310a8982bf6c8f6494b933a391 Trojan Graftor

WYCAIGK.EXE size: 192557 bytes
WYCAIGK.EXE hash: 2B24D3310A8982BF6C8F6494B933A391

Created files:

%Program Files%\AppPatch\NetSyst69.dll
%WinDir%\Wycaigk.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Wsgyaq aaeqcqoq\ConnectGroup: ??????
HKLM\System\CurrentControlSet\Services\Wsgyaq aaeqcqoq\Type: 10010000
HKLM\System\CurrentControlSet\Services\Wsgyaq aaeqcqoq\Start: 02000000
HKLM\System\CurrentControlSet\Services\Wsgyaq aaeqcqoq\DisplayName: Cqigco gkumauqamoiqcigoeu
HKLM\System\CurrentControlSet\Services\Wsgyaq aaeqcqoq\ImagePath: %WinDir%\Wycaigk.exe

Detected by UnHackMe:

WYCAIGK.EXE
Default location: %WinDir%\WYCAIGK.EXE

Dropper information:
MD5: 2b24d3310a8982bf6c8f6494b933a391
File size: 192557 bytes

Leave a Reply