SUPER.VIDEO.TO.AUDIO.CONVERTER.V5.7.2.EXE – Trojan Chifrax

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SUPER.VIDEO.TO.AUDIO.CONVERTER.V5.7.2.EXE – Trojan Chifrax removal

FileMD5Virus Alias
SUPER.VIDEO.TO.AUDIO.CONVERTER.V5.7.2.EXE 1914cd16123fa35c55a38c874d4ef9c3 Trojan Chifrax

SUPER.VIDEO.TO.AUDIO.CONVERTER.V5.7.2.EXE size: 2135875 bytes
SUPER.VIDEO.TO.AUDIO.CONVERTER.V5.7.2.EXE hash: 1914CD16123FA35C55A38C874D4EF9C3

Created files:

%Program Files%\Xoqku\Ciegl.exe
%Program Files%\Xoqku\Oauos\Naul.dll
%Program Files%\Xoqku\Wkce.exe
%TEMP%\g811\Super.Video.to.Audio.Converter.v5.7.2.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\OALX\Start: 02000000
HKLM\System\CurrentControlSet\Services\OALX\Type: 10000000
HKLM\System\CurrentControlSet\Services\OALX\Description: Data Online Transaction Processing Module
HKLM\System\CurrentControlSet\Services\OALX\DisplayName: Data Online Transaction Processing Module
HKLM\System\CurrentControlSet\Services\OALX\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\OALX\Group: TDI
HKLM\System\CurrentControlSet\Services\OALX\ObjectName: LocalSystem
HKLM\System\CurrentControlSet\Services\OALX\ImagePath: %Program Files%\Xoqku\Ciegl.exe

Detected by UnHackMe:

SUPER.VIDEO.TO.AUDIO.CONVERTER.V5.7.2.EXE
Default location: %TEMP%\G811\SUPER.VIDEO.TO.AUDIO.CONVERTER.V5.7.2.EXE

Dropper information:
MD5: 71a28768211d8dc4bc6d2ffcb3a6cca8
File size: 4081017 bytes

Leave a Reply