CMSTP.EXE – Trojan Small

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

CMSTP.EXE – Trojan Small removal

FileMD5Virus Alias
CMSTP.EXE 06ab70a6c0a8db7205c9bd35b3fb060e Trojan Small
CMSTP.EXE 06ab70a6c0a8db7205c9bd35b3fb060e Suspicious File
CMSTP.EXE 06ab70a6c0a8db7205c9bd35b3fb060e Trojan Artemis
CMSTP.EXE 06ab70a6c0a8db7205c9bd35b3fb060e Trojan Generic
CMSTP.EXE 06ab70a6c0a8db7205c9bd35b3fb060e Trojan Eldorado
CMSTP.EXE 06ab70a6c0a8db7205c9bd35b3fb060e Trojan Downloader

CMSTP.EXE size: 465408 bytes
CMSTP.EXE hash: 06AB70A6C0A8DB7205C9BD35B3FB060E

Created files:

%WinDir%\cmstp.exe
%WinDir%\System\logman.exe
%UserProfile%\Local Settings\Application Data\Microsoft\lsm.exe
%SysDir%\drivers\esentutl.exe
%TEMP%\Twain002.Mtx

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Logman: %WinDir%\System\logman.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\lsm service: %WinDir%\System32\config\SYSTEM~1\LOCALS~1\APPLIC~1\MICROS~1\lsm.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Microsoft Connection Manager: %WinDir%\cmstp.exe

Detected by UnHackMe:

CMSTP.EXE
Default location: %WinDir%\CMSTP.EXE

Dropper information:
MD5: 06ab70a6c0a8db7205c9bd35b3fb060e
File size: 465408 bytes

Leave a Reply