WININIT.EXE – Trojan Small

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

WININIT.EXE – Trojan Small removal

FileMD5Virus Alias
WININIT.EXE a158739a0fe21bb78392d6b13b9700a1 Trojan Small
WININIT.EXE a158739a0fe21bb78392d6b13b9700a1 Trojan Downloader
WININIT.EXE a158739a0fe21bb78392d6b13b9700a1 Trojan ZBot

WININIT.EXE size: 465408 bytes
WININIT.EXE hash: A158739A0FE21BB78392D6B13B9700A1

Created files:

%WinDir%\System\clipsrv.exe
%WinDir%\System32\drivers\dllhst3g.exe
%TEMP%\Twain002.Mtx
%WinDir%\wininit.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\ClipSrv: %WinDir%\System\clipsrv.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\DllHost3g: %WinDir%\System32\drivers\dllhst3g.exe

Detected by UnHackMe:

WININIT.EXE
Default location: %WinDir%\WININIT.EXE

Dropper information:
MD5: 021ed44a134b5a0a147f44a499510dc9
File size: 465408 bytes

Leave a Reply