YY.EXE – Trojan Artemis

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

YY.EXE – Trojan Artemis removal

FileMD5Virus Alias
YY.EXE 284ee0b5932d771b8a5da31dceb82956 Trojan Artemis
YY.EXE 284ee0b5932d771b8a5da31dceb82956 Trojan SuspiciousFile
YY.EXE 284ee0b5932d771b8a5da31dceb82956 Trojan Eldorado
YY.EXE 284ee0b5932d771b8a5da31dceb82956 Trojan Agent

YY.EXE size: 64000 bytes
YY.EXE hash: 284EE0B5932D771B8A5DA31DCEB82956

Created files:

%WinDir%\QVODBOB5.EXE
%TEMP%\IXP000.TMP\QVODSE~1.EXE
%TEMP%\IXP000.TMP\yy.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\wextract_cleanup0: rundll32.exe %WinDir%\System32\advpack.dll,DelNodeRunDLL32 “%TEMP%\IXP000.TMP\”

Detected by UnHackMe:

YY.EXE
Default location: %TEMP%\IXP000.TMP\YY.EXE

Dropper information:
MD5: 57caae58ae9d0e1ea8e3c7d6cb72d50c
File size: 580884 bytes

Leave a Reply