FINEPRINT.V6.10.X64.INCL.KEYMAKER-ZWT.EXE – Trojan KeygenRiskware

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

FINEPRINT.V6.10.X64.INCL.KEYMAKER-ZWT.EXE – Trojan KeygenRiskware removal

FileMD5Virus Alias
FINEPRINT.V6.10.X64.INCL.KEYMAKER-ZWT.EXE 74938d4cc1edd6e45e6c774b0d102049 Trojan KeygenRiskware
FINEPRINT.V6.10.X64.INCL.KEYMAKER-ZWT.EXE 74938d4cc1edd6e45e6c774b0d102049 Trojan Generic
FINEPRINT.V6.10.X64.INCL.KEYMAKER-ZWT.EXE 74938d4cc1edd6e45e6c774b0d102049 Trojan Chifrax
FINEPRINT.V6.10.X64.INCL.KEYMAKER-ZWT.EXE 74938d4cc1edd6e45e6c774b0d102049 Trojan Agent

FINEPRINT.V6.10.X64.INCL.KEYMAKER-ZWT.EXE size: 1622247 bytes
FINEPRINT.V6.10.X64.INCL.KEYMAKER-ZWT.EXE hash: 74938D4CC1EDD6E45E6C774B0D102049

Created files:

%Program Files%\Jkga\Erawi.exe
%Program Files%\Jkga\Oaxz.exe
%Program Files%\Jkga\Voze\Aqly.dll
%TEMP%\g848\FinePrint.v6.10.x64.Incl.Keymaker-ZWT.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\OALX\Start: 02000000
HKLM\System\CurrentControlSet\Services\OALX\Type: 10000000
HKLM\System\CurrentControlSet\Services\OALX\Description: Data Online Transaction Processing Module
HKLM\System\CurrentControlSet\Services\OALX\DisplayName: Data Online Transaction Processing Module
HKLM\System\CurrentControlSet\Services\OALX\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\OALX\Group: TDI
HKLM\System\CurrentControlSet\Services\OALX\ObjectName: LocalSystem
HKLM\System\CurrentControlSet\Services\OALX\ImagePath: %Program Files%\Jkga\Oaxz.exe

Detected by UnHackMe:

FINEPRINT.V6.10.X64.INCL.KEYMAKER-ZWT.EXE
Default location: %TEMP%\G848\FINEPRINT.V6.10.X64.INCL.KEYMAKER-ZWT.EXE

Dropper information:
MD5: 41cf3d45f369aeb8eca6cf31740e746e
File size: 3567232 bytes

Leave a Reply