HIDDEN.ISLAND.V1.01-TE.EXE – Trojan Chifrax

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

HIDDEN.ISLAND.V1.01-TE.EXE – Trojan Chifrax removal

FileMD5Virus Alias
HIDDEN.ISLAND.V1.01-TE.EXE d29964fa24148aa9aaa17aa123ff6f35 Trojan Chifrax

HIDDEN.ISLAND.V1.01-TE.EXE size: 15055467 bytes
HIDDEN.ISLAND.V1.01-TE.EXE hash: D29964FA24148AA9AAA17AA123FF6F35

Created files:

%Program Files%\Xsdaq\Bxoe\Zetuf.dll
%Program Files%\Xsdaq\Ilkf.exe
%Program Files%\Xsdaq\Khuar.exe
%TEMP%\g8165\Hidden.Island.v1.01-TE.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\OALX\Start: 02000000
HKLM\System\CurrentControlSet\Services\OALX\Type: 10000000
HKLM\System\CurrentControlSet\Services\OALX\Description: Data Online Transaction Processing Module
HKLM\System\CurrentControlSet\Services\OALX\DisplayName: Data Online Transaction Processing Module
HKLM\System\CurrentControlSet\Services\OALX\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\OALX\Group: TDI
HKLM\System\CurrentControlSet\Services\OALX\ObjectName: LocalSystem
HKLM\System\CurrentControlSet\Services\OALX\ImagePath: %Program Files%\Xsdaq\Khuar.exe

Detected by UnHackMe:

HIDDEN.ISLAND.V1.01-TE.EXE
Default location: %TEMP%\G8165\HIDDEN.ISLAND.V1.01-TE.EXE

Dropper information:
MD5: e87597911f77325a4e454f9ccf09a280
File size: 17000314 bytes

Leave a Reply