TERMINAL.EXE.EXE – Trojan SuspiciousFile

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

TERMINAL.EXE.EXE – Trojan SuspiciousFile removal

File MD5 Virus Alias
TERMINAL.EXE.EXE 7c46a5f7cab57204dadd456742791b31 Trojan SuspiciousFile

TERMINAL.EXE.EXE size: 151040 bytes
TERMINAL.EXE.EXE hash: 7C46A5F7CAB57204DADD456742791B31

Created files:

%SysDir%\$MTrader4\MQL4\experts\TP1.ex4
%SysDir%\$MTrader4\MQL4\experts\TP10.ex4
%SysDir%\$MTrader4\MQL4\experts\TP2.ex4
%SysDir%\$MTrader4\MQL4\experts\TP3.ex4
%SysDir%\$MTrader4\MQL4\experts\TP4.ex4
%SysDir%\$MTrader4\MQL4\experts\TP5.ex4
%SysDir%\$MTrader4\MQL4\experts\TP6.ex4
%SysDir%\$MTrader4\MQL4\experts\TP7.ex4
%SysDir%\$MTrader4\MQL4\experts\TP8.ex4
%SysDir%\$MTrader4\MQL4\experts\TP9.ex4
%SysDir%\$MTrader4\MQL4\Indicators\TP1.ex4
%SysDir%\$MTrader4\MQL4\Indicators\TP10.ex4
%SysDir%\$MTrader4\MQL4\Indicators\TP2.ex4
%SysDir%\$MTrader4\MQL4\Indicators\TP3.ex4
%SysDir%\$MTrader4\MQL4\Indicators\TP4.ex4
%SysDir%\$MTrader4\MQL4\Indicators\TP5.ex4
%SysDir%\$MTrader4\MQL4\Indicators\TP6.ex4
%SysDir%\$MTrader4\MQL4\Indicators\TP7.ex4
%SysDir%\$MTrader4\MQL4\Indicators\TP8.ex4
%SysDir%\$MTrader4\MQL4\Indicators\TP9.ex4
%SysDir%\$MTrader4\MQL4\libraries\TP1.ex4
%SysDir%\$MTrader4\MQL4\libraries\TP10.ex4
%SysDir%\$MTrader4\MQL4\libraries\TP2.ex4
%SysDir%\$MTrader4\MQL4\libraries\TP3.ex4
%SysDir%\$MTrader4\MQL4\libraries\TP4.ex4
%SysDir%\$MTrader4\MQL4\libraries\TP5.ex4
%SysDir%\$MTrader4\MQL4\libraries\TP6.ex4
%SysDir%\$MTrader4\MQL4\libraries\TP7.ex4
%SysDir%\$MTrader4\MQL4\libraries\TP8.ex4
%SysDir%\$MTrader4\MQL4\libraries\TP9.ex4
%SysDir%\$MTrader4\MQL4\Scripts\TP1.ex4
%SysDir%\$MTrader4\MQL4\Scripts\TP10.ex4
%SysDir%\$MTrader4\MQL4\Scripts\TP2.ex4
%SysDir%\$MTrader4\MQL4\Scripts\TP3.ex4
%SysDir%\$MTrader4\MQL4\Scripts\TP4.ex4
%SysDir%\$MTrader4\MQL4\Scripts\TP5.ex4
%SysDir%\$MTrader4\MQL4\Scripts\TP6.ex4
%SysDir%\$MTrader4\MQL4\Scripts\TP7.ex4
%SysDir%\$MTrader4\MQL4\Scripts\TP8.ex4
%SysDir%\$MTrader4\MQL4\Scripts\TP9.ex4
%SysDir%\$MTrader4\templates\TradingPredictor-Gold-Coin-v2.1.tpl
%SysDir%\mslock78.dll
%SysDir%\SetGshi.exe
%SysDir%\Win74e14.exe
%SysDir%\YourDll\Ex4Protector.dll
%SysDir%\YourDll\Ex4Protector.exe
%SysDir%\YourDll\Terminal.exe.exe
%SysDir%\YourDll\tradpre4.dll
%SysDir%\YourDll\tradpre4.exe

Detected by UnHackMe:

TERMINAL.EXE.EXE
Default location: %SYSDIR%\YOURDLL\TERMINAL.EXE.EXE

Dropper information:
MD5: a5c59516f90373633bbe37734e8e6294
File size: 1540435 bytes