I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
LCBTCG.EXE – Trojan Magania removal
File | MD5 | Virus Alias |
---|---|---|
LCBTCG.EXE | 3b68639bb5de1e0b3705f3b72a73fce2 | Trojan Magania |
LCBTCG.EXE | 3b68639bb5de1e0b3705f3b72a73fce2 | Trojan Downloader |
LCBTCG.EXE | 3b68639bb5de1e0b3705f3b72a73fce2 | Trojan Agent |
LCBTCG.EXE | 3b68639bb5de1e0b3705f3b72a73fce2 | Trojan Scar |
LCBTCG.EXE size: 139264 bytes
LCBTCG.EXE hash: 3B68639BB5DE1E0B3705F3B72A73FCE2
Created files:
%SysDir%\lcbtcg.exe
%TEMP%\Server.dll
Autostart registry keys:
HKLM\System\CurrentControlSet\Services\BITS\JConnectGroup: 5OTkq56gnqHk8u+r6/Lhl5WdnZ3N
HKLM\System\CurrentControlSet\Services\BITS\JSet: û??????
HKLM\System\CurrentControlSet\Services\BITS\JTime: 014
HKLM\System\CurrentControlSet\Services\Dr yta Service\Type: 10000000
HKLM\System\CurrentControlSet\Services\Dr yta Service\Start: 02000000
HKLM\System\CurrentControlSet\Services\Dr yta Service\DisplayName: Dr jrq
HKLM\System\CurrentControlSet\Services\Dr yta Service\ImagePath: %WinDir%\System32\lcbtcg.exe
HKLM\System\CurrentControlSet\Services\Dr yta Service\Description: Dr mid server for NI security.
Detected by UnHackMe:
LCBTCG.EXE
Default location: %SYSDIR%\LCBTCG.EXE
Dropper information:
MD5: 3b68639bb5de1e0b3705f3b72a73fce2
File size: 139264 bytes