Solved! Use PD1C.EXE (Trojan Agent) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

PD1C.EXE – Trojan Agent removal

FileMD5Virus Alias
PD1C.EXE 524a5ed6e701de49b7b2a4e7bd8a3aeb Trojan Agent

PD1C.EXE size: 82663 bytes
PD1C.EXE hash: 524A5ED6E701DE49B7B2A4E7BD8A3AEB

Created files:

%Program Files%\MSN Gaming Zone\Windows\bckgzm.exe
%Program Files%\MSN Gaming Zone\Windows\chkrzm.exe
%SysDir%\taskmgr.exe
%SysDir%\Winkokn.exe
%TEMP%\Pd1C.exe
%TEMP%\Ta1A.exe
%TEMP%\Tsa1B.exe
%TEMP%\Zol19.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Winkokn\Type: 10010000
HKLM\System\CurrentControlSet\Services\Winkokn\Start: 02000000
HKLM\System\CurrentControlSet\Services\Winkokn\DisplayName: Winkokn
HKLM\System\CurrentControlSet\Services\Winkokn\ImagePath: %WinDir%\System32\Winkokn.exe

Detected by UnHackMe:

PD1C.EXE
Default location: %TEMP%\PD1C.EXE

Dropper information:
MD5: 6250a4406bb2c1908969a933d88cb660
File size: 82381 bytes

Leave a Reply