IEUDINIT.EXE – Trojan Small

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

IEUDINIT.EXE – Trojan Small removal

FileMD5Virus Alias
IEUDINIT.EXE 0ca2557057fab3f2f646b254472d89b2 Trojan Small
IEUDINIT.EXE 0ca2557057fab3f2f646b254472d89b2 Trojan SuspiciousFile
IEUDINIT.EXE 0ca2557057fab3f2f646b254472d89b2 Trojan Generic
IEUDINIT.EXE 0ca2557057fab3f2f646b254472d89b2 Trojan Eldorado
IEUDINIT.EXE 0ca2557057fab3f2f646b254472d89b2 Trojan Agent

IEUDINIT.EXE size: 476160 bytes
IEUDINIT.EXE hash: 0CA2557057FAB3F2F646B254472D89B2

Created files:

%WinDir%\System32\config\systemprofile\Local Settings\Application Data\ieudinit.exe
%WinDir%\System32\config\systemprofile\Local Settings\Application Data\Microsoft\spoolsv.exe
%WinDir%\System32\drivers\mstsc.exe
%WinDir%\System32\drivers\winlogon.exe
%TEMP%\Twain002.Mtx
%AllUsersProfile%\cmstp.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Microsoft Connection Manager: C:\DOCUME~1\ALLUSE~1\cmstp.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\WinLogon: %WinDir%\System32\drivers\winlogon.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\IEudInit: %WinDir%\System32\config\SYSTEM~1\LOCALS~1\APPLIC~1\ieudinit.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Spooler: %WinDir%\System32\config\Systemprofile\Local Settings\Application Data\Microsoft\spoolsv.exe

Detected by UnHackMe:

IEUDINIT.EXE
Default location: %LOCAL APPDATA%\IEUDINIT.EXE

Dropper information:
MD5: 0ca2557057fab3f2f646b254472d89b2
File size: 476160 bytes

Leave a Reply