LCBTCG.EXE – Trojan Magania

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

LCBTCG.EXE – Trojan Magania removal

FileMD5Virus Alias
LCBTCG.EXE 3b68639bb5de1e0b3705f3b72a73fce2 Trojan Magania
LCBTCG.EXE 3b68639bb5de1e0b3705f3b72a73fce2 Trojan Downloader
LCBTCG.EXE 3b68639bb5de1e0b3705f3b72a73fce2 Trojan Agent
LCBTCG.EXE 3b68639bb5de1e0b3705f3b72a73fce2 Trojan Scar

LCBTCG.EXE size: 139264 bytes
LCBTCG.EXE hash: 3B68639BB5DE1E0B3705F3B72A73FCE2

Created files:

%SysDir%\lcbtcg.exe
%TEMP%\Server.dll

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\BITS\JConnectGroup: 5OTkq56gnqHk8u+r6/Lhl5WdnZ3N
HKLM\System\CurrentControlSet\Services\BITS\JSet: รป??????
HKLM\System\CurrentControlSet\Services\BITS\JTime: 014
HKLM\System\CurrentControlSet\Services\Dr yta Service\Type: 10000000
HKLM\System\CurrentControlSet\Services\Dr yta Service\Start: 02000000
HKLM\System\CurrentControlSet\Services\Dr yta Service\DisplayName: Dr jrq
HKLM\System\CurrentControlSet\Services\Dr yta Service\ImagePath: %WinDir%\System32\lcbtcg.exe
HKLM\System\CurrentControlSet\Services\Dr yta Service\Description: Dr mid server for NI security.

Detected by UnHackMe:

LCBTCG.EXE
Default location: %SYSDIR%\LCBTCG.EXE

Dropper information:
MD5: 3b68639bb5de1e0b3705f3b72a73fce2
File size: 139264 bytes

Leave a Reply