LYXWVBDQGLCZ.EXE – Trojan Downloader

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

LYXWVBDQGLCZ.EXE – Trojan Downloader removal

FileMD5Virus Alias
LYXWVBDQGLCZ.EXE bd7e740692273bfb114c4a1e58f3135e Trojan Downloader
LYXWVBDQGLCZ.EXE bd7e740692273bfb114c4a1e58f3135e Trojan SuspiciousFile
LYXWVBDQGLCZ.EXE bd7e740692273bfb114c4a1e58f3135e Trojan Generic
LYXWVBDQGLCZ.EXE bd7e740692273bfb114c4a1e58f3135e Trojan Agent

LYXWVBDQGLCZ.EXE size: 1212654 bytes
LYXWVBDQGLCZ.EXE hash: BD7E740692273BFB114C4A1E58F3135E

Created files:

%Program Files%\DNSProtectSupport\svchost.exe
%Program Files%\DNSProtectSupport\svchost.exe.bak
%TEMP%\EzUbCK.exe
%TEMP%\gWQeGgw.exe
%TEMP%\LYXwvbdqgLcz.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\DNSProtectSupport\Type: 10000000
HKLM\System\CurrentControlSet\Services\DNSProtectSupport\Start: 02000000
HKLM\System\CurrentControlSet\Services\DNSProtectSupport\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\DNSProtectSupport\ImagePath: %Program Files%\DNSProtectSupport\svchost.exe

Detected by UnHackMe:

LYXWVBDQGLCZ.EXE
Default location: %TEMP%\LYXWVBDQGLCZ.EXE

Dropper information:
MD5: 006c54c44e4fe4f70f4817121dd23fce
File size: 474960 bytes

Leave a Reply