LGQMX.EXE – Trojan Crypt

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

LGQMX.EXE – Trojan Crypt removal

FileMD5Virus Alias
LGQMX.EXE 1327d60ecdce858723e73d9670076a2a Trojan Crypt
LGQMX.EXE 1327d60ecdce858723e73d9670076a2a Trojan XPACK
LGQMX.EXE 1327d60ecdce858723e73d9670076a2a Trojan Downloader
LGQMX.EXE 1327d60ecdce858723e73d9670076a2a Trojan Small

LGQMX.EXE size: 9728 bytes
LGQMX.EXE hash: 1327D60ECDCE858723E73D9670076A2A

Created files:

%SysDir%\lgqmx.dll
%SysDir%\lgqmx.exe
%TEMP%\lgqmx.dll
%TEMP%\lqcnx.exe
%TEMP%\mivox.exe

Autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{9d5126d8-f231-4e07-af66-70194c7061d2} : AUTOINSTALLER
HKLM\Software\Microsoft\Active Setup\Installed Components\{9d5126d8-f231-4e07-af66-70194c7061d2}\ComponentID: AUTOINSTALLER
HKLM\Software\Microsoft\Active Setup\Installed Components\{9d5126d8-f231-4e07-af66-70194c7061d2}\Version: 1,1,1,1
HKLM\Software\Microsoft\Active Setup\Installed Components\{9d5126d8-f231-4e07-af66-70194c7061d2}\IsInstalled: 01000000
HKLM\Software\Microsoft\Active Setup\Installed Components\{9d5126d8-f231-4e07-af66-70194c7061d2}\Locale: en
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\lgqmx: “%WinDir%\System32\lgqmx.exe”

Detected by UnHackMe:

LGQMX.EXE
Default location: %SYSDIR%\LGQMX.EXE

Dropper information:
MD5: 1327d60ecdce858723e73d9670076a2a
File size: 9728 bytes

Leave a Reply