Solved! Use TINSTALL.EXE (Trojan, Suspicious File) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

TINSTALL.EXE – Trojan, Suspicious File removal

File MD5 Virus Alias
TINSTALL.EXE 79107a48836894bee2b09404274c8306 Trojan, Suspicious File
TINSTALL.EXE 79107a48836894bee2b09404274c8306 Trojan Agent

TINSTALL.EXE size: 1755613 bytes
TINSTALL.EXE hash: 79107A48836894BEE2B09404274C8306

Created files:

%Program Files%\RzxTerminal\msvcp71.dll
%Program Files%\RzxTerminal\msvcr71.dll
%Program Files%\RzxTerminal\RzxTerminal.exe
%Program Files%\RzxTerminal\Terminal.dll
%Program Files%\RzxTerminal\Utility.dll
%SysDir%\dismanager.exe
%SysDir%\TerminalManager.exe
%SysDir%\TInstall.exe
%SysDir%\waterframe.exe
%Temp%\RarSFX0\ACE.dll
%Temp%\RarSFX0\Communication.dll
%Temp%\RarSFX0\msvcr71.dll
%Temp%\RarSFX0\notify.dll
%Temp%\RarSFX0\RzxDispatcher.dll
%Temp%\RarSFX0\RzxSignalRecv.dll
%Temp%\RarSFX0\RZXVSamp.dll
%Temp%\RarSFX0\seedbed.dll
%Temp%\RarSFX0\SystemRegist.dll
%Temp%\RarSFX0\TConfig.dll
%Temp%\RarSFX0\Terminal.dll
%Temp%\RarSFX0\Terminal.exe
%Temp%\RarSFX0\terminal.sys
%Temp%\RarSFX0\TerminalManager.exe
%Temp%\RarSFX0\TerminalSetup.exe
%Temp%\RarSFX0\Utility.dll
%Temp%\RarSFX0\VideoImage.dll
%Temp%\RarSFX0\zlib.dll

Detected by UnHackMe:

TINSTALL.EXE
Default location: %SYSDIR%\TINSTALL.EXE

Dropper information:
MD5: cd0a776517ed7d2f7e1c348a7dd8d598
File size: 1985253 bytes

Leave a Reply