CRINTSOFT.MINILYRICS.V6.5.278.INCL.KEYGEN-JANOSIK.EXE – Trojan Agent

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

CRINTSOFT.MINILYRICS.V6.5.278.INCL.KEYGEN-JANOSIK.EXE – Trojan Agent removal

FileMD5Virus Alias
CRINTSOFT.MINILYRICS.V6.5.278.INCL.KEYGEN-JANOSIK.EXE 45c95fedc265026c3339ec6c9803b1c8 Trojan Agent
CRINTSOFT.MINILYRICS.V6.5.278.INCL.KEYGEN-JANOSIK.EXE 45c95fedc265026c3339ec6c9803b1c8 Trojan XPACK
CRINTSOFT.MINILYRICS.V6.5.278.INCL.KEYGEN-JANOSIK.EXE 45c95fedc265026c3339ec6c9803b1c8 Trojan Generic
CRINTSOFT.MINILYRICS.V6.5.278.INCL.KEYGEN-JANOSIK.EXE 45c95fedc265026c3339ec6c9803b1c8 Trojan Xema
CRINTSOFT.MINILYRICS.V6.5.278.INCL.KEYGEN-JANOSIK.EXE 45c95fedc265026c3339ec6c9803b1c8 Trojan Chifrax
CRINTSOFT.MINILYRICS.V6.5.278.INCL.KEYGEN-JANOSIK.EXE 45c95fedc265026c3339ec6c9803b1c8 Trojan MLW

CRINTSOFT.MINILYRICS.V6.5.278.INCL.KEYGEN-JANOSIK.EXE size: 2054613 bytes
CRINTSOFT.MINILYRICS.V6.5.278.INCL.KEYGEN-JANOSIK.EXE hash: 45C95FEDC265026C3339EC6C9803B1C8

Created files:

%Program Files%\Zpsa\Kenad.exe
%Program Files%\Zpsa\Ozac\Dexo.dll
%Program Files%\Zpsa\Peqw.exe
%TEMP%\g823\Crintsoft.MiniLyrics.v6.5.278.Incl.Keygen-JANOSiK.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\OALX\Start: 02000000
HKLM\System\CurrentControlSet\Services\OALX\Type: 10000000
HKLM\System\CurrentControlSet\Services\OALX\Description: Data Online Transaction Processing Module
HKLM\System\CurrentControlSet\Services\OALX\DisplayName: Data Online Transaction Processing Module
HKLM\System\CurrentControlSet\Services\OALX\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\OALX\Group: TDI
HKLM\System\CurrentControlSet\Services\OALX\ObjectName: LocalSystem
HKLM\System\CurrentControlSet\Services\OALX\ImagePath: %Program Files%\Zpsa\Kenad.exe

Detected by UnHackMe:

CRINTSOFT.MINILYRICS.V6.5.278.INCL.KEYGEN-JANOSIK.EXE
Default location: %TEMP%\G823\CRINTSOFT.MINILYRICS.V6.5.278.INCL.KEYGEN-JANOSIK.EXE

Dropper information:
MD5: 2102c028e9e83b6d874878887420f518
File size: 3999456 bytes

Leave a Reply