Trojan Krap – quanskp.sys – 2845559bd2297e8d6bfc145edc771fbf

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Krap
Also known as: Trojan Crypt, Trojan Generic
SHA256: cc30b45d430df99f5b0cd1594527f36246b4383c1df51bdfdf4650118f9b0e02
SHA1: 3e33abe45de3e81b955d2669c42ade7c1c386d36
MD5: 2845559bd2297e8d6bfc145edc771fbf
File size: 1463408 bytes

Created files:

%SysDir%\quanskp.sys – Trojan Krap
%SysDir%\Uninstall alexa.exe – Trojan Krap
%SysDir%\WindowsDriver.dll – Trojan Krap
%Common Startmenu%\Programs\alexa\Uninstall alexa.lnk – Trojan Krap

Trojan Krap created autostart registry keys:

HKLM\System\CurrentControlSet\Services\quanskp\Type: 01000000
HKLM\System\CurrentControlSet\Services\quanskp\Start: 02000000
HKLM\System\CurrentControlSet\Services\quanskp\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\quanskp\DisplayName: quanskp
HKLM\System\CurrentControlSet\Services\quanskp\ImagePath: %WinDir%\System32\quanskp.sys
HKLM\System\CurrentControlSet\Services\WindowsDriver\Type: 10010000
HKLM\System\CurrentControlSet\Services\WindowsDriver\Start: 02000000
HKLM\System\CurrentControlSet\Services\WindowsDriver\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\WindowsDriver\DisplayName: WindowsDriver
HKLM\System\CurrentControlSet\Services\WindowsDriver\ImagePath: %WinDir%\System32\svchost.exe -k WindowsDriver
HKLM\System\CurrentControlSet\Services\WindowsDriver\Parameters\ServiceDll: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C00570069006E0064006F00770073004400720069007600650072002E0064006C006C000000

Leave a Reply