Pointstone.System.Cleaner.v5.7.3.230.WinALL.Cracked-BRD.exe – Trojan Agent

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Pointstone.System.Cleaner.v5.7.3.230.WinALL.Cracked-BRD.exe – Trojan Agent removal

FileVirus Alias
Pointstone.System.Cleaner.v5.7.3.230.WinALL.Cracked-BRD.exe Trojan Agent
Pointstone.System.Cleaner.v5.7.3.230.WinALL.Cracked-BRD.exe Trojan Small
Pointstone.System.Cleaner.v5.7.3.230.WinALL.Cracked-BRD.exe Trojan Crypt
Pointstone.System.Cleaner.v5.7.3.230.WinALL.Cracked-BRD.exe Trojan CI
Pointstone.System.Cleaner.v5.7.3.230.WinALL.Cracked-BRD.exe Trojan FakeAV
Pointstone.System.Cleaner.v5.7.3.230.WinALL.Cracked-BRD.exe Trojan Delf

Created files:

%Program Files%\Uzofj\Psqut.exe – Trojan Agent
%Program Files%\Uzofj\Uujui.exe – Trojan Agent
%Program Files%\Uzofj\Zyot\Nzick.dll – Trojan Agent
%Temp%\g85E\Pointstone.System.Cleaner.v5.7.3.230.WinALL.Cracked-BRD.exe – Trojan Agent

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\OALX\Start: 02000000
HKLM\System\CurrentControlSet\Services\OALX\Type: 10000000
HKLM\System\CurrentControlSet\Services\OALX\Description: Data Online Transaction Processing Module
HKLM\System\CurrentControlSet\Services\OALX\DisplayName: Data Online Transaction Processing Module
HKLM\System\CurrentControlSet\Services\OALX\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\OALX\Group: TDI
HKLM\System\CurrentControlSet\Services\OALX\ObjectName: LocalSystem
HKLM\System\CurrentControlSet\Services\OALX\ImagePath: %Program Files%\Uzofj\Uujui.exe

Detected by UnHackMe:

Pointstone.System.Cleaner.v5.7.3.230.WinALL.Cracked-BRD.exe
Default location: %Temp%\g85E\Pointstone.System.Cleaner.v5.7.3.230.WinALL.Cracked-BRD.exe

Dropper information:
SHA256: 3fcc93b6da32f2f5dc2b6b6ab9814ddefdea1400ffcfee84b361a1d962aa098f
SHA1: 7e6eca8c083ac1f6d98eb3b00a25dbdd94f862a2
MD5: 0d2e1ea7e7a2022effa2a0a25547ff44
File size: 5751953 bytes

Leave a Reply