I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
CRINTSOFT.MINILYRICS.V6.5.278.INCL.KEYGEN-JANOSIK.EXE – Trojan Agent removal
File | MD5 | Virus Alias |
---|---|---|
CRINTSOFT.MINILYRICS.V6.5.278.INCL.KEYGEN-JANOSIK.EXE | 45c95fedc265026c3339ec6c9803b1c8 | Trojan Agent |
CRINTSOFT.MINILYRICS.V6.5.278.INCL.KEYGEN-JANOSIK.EXE | 45c95fedc265026c3339ec6c9803b1c8 | Trojan XPACK |
CRINTSOFT.MINILYRICS.V6.5.278.INCL.KEYGEN-JANOSIK.EXE | 45c95fedc265026c3339ec6c9803b1c8 | Trojan Generic |
CRINTSOFT.MINILYRICS.V6.5.278.INCL.KEYGEN-JANOSIK.EXE | 45c95fedc265026c3339ec6c9803b1c8 | Trojan Xema |
CRINTSOFT.MINILYRICS.V6.5.278.INCL.KEYGEN-JANOSIK.EXE | 45c95fedc265026c3339ec6c9803b1c8 | Trojan Chifrax |
CRINTSOFT.MINILYRICS.V6.5.278.INCL.KEYGEN-JANOSIK.EXE | 45c95fedc265026c3339ec6c9803b1c8 | Trojan MLW |
CRINTSOFT.MINILYRICS.V6.5.278.INCL.KEYGEN-JANOSIK.EXE size: 2054613 bytes
CRINTSOFT.MINILYRICS.V6.5.278.INCL.KEYGEN-JANOSIK.EXE hash: 45C95FEDC265026C3339EC6C9803B1C8
Created files:
%Program Files%\Zpsa\Kenad.exe
%Program Files%\Zpsa\Ozac\Dexo.dll
%Program Files%\Zpsa\Peqw.exe
%TEMP%\g823\Crintsoft.MiniLyrics.v6.5.278.Incl.Keygen-JANOSiK.exe
Autostart registry keys:
HKLM\System\CurrentControlSet\Services\OALX\Start: 02000000
HKLM\System\CurrentControlSet\Services\OALX\Type: 10000000
HKLM\System\CurrentControlSet\Services\OALX\Description: Data Online Transaction Processing Module
HKLM\System\CurrentControlSet\Services\OALX\DisplayName: Data Online Transaction Processing Module
HKLM\System\CurrentControlSet\Services\OALX\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\OALX\Group: TDI
HKLM\System\CurrentControlSet\Services\OALX\ObjectName: LocalSystem
HKLM\System\CurrentControlSet\Services\OALX\ImagePath: %Program Files%\Zpsa\Kenad.exe
Detected by UnHackMe:
CRINTSOFT.MINILYRICS.V6.5.278.INCL.KEYGEN-JANOSIK.EXE
Default location: %TEMP%\G823\CRINTSOFT.MINILYRICS.V6.5.278.INCL.KEYGEN-JANOSIK.EXE
Dropper information:
MD5: 2102c028e9e83b6d874878887420f518
File size: 3999456 bytes