MPTPLG.RCT – Trojan SuspiciousFile

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

MPTPLG.RCT – Trojan SuspiciousFile removal

FileMD5Virus Alias
MPTPLG.RCT 487a7b5a5429f59c5067f43e287e2b5a Trojan SuspiciousFile

MPTPLG.RCT size: 199168 bytes
MPTPLG.RCT hash: 487A7B5A5429F59C5067F43E287E2B5A

Created files:

%TEMP%\TEInst\bmgc32.dll
%TEMP%\TEInst\bmproj32.dll
%TEMP%\TEInst\BMTransf.dll
%TEMP%\TEInst\Cab.zte
%TEMP%\TEInst\CONUS.LAS
%TEMP%\TEInst\CONUS.LOS
%TEMP%\TEInst\MptDll.dll
%TEMP%\TEInst\Plugs\bin\msvcr71.dll
%TEMP%\TEInst\Plugs\bin\pe.dll
%TEMP%\TEInst\Plugs\bin\sde.dll
%TEMP%\TEInst\Plugs\bin\sg.dll
%TEMP%\TEInst\Plugs\TEArcSDEPlugin.dll
%TEMP%\TEInst\Plugs\TEAsciiPlugin.dll
%TEMP%\TEInst\Plugs\TEDSNPlugin.dll
%TEMP%\TEInst\Plugs\TEDxfPlugin.dll
%TEMP%\TEInst\Plugs\TEFltPlugin.dll
%TEMP%\TEInst\Plugs\TEGeoDBPlugin.dll
%TEMP%\TEInst\Plugs\TEOraclePlugin.dll
%TEMP%\TEInst\Plugs\TERTEPlugin.dll
%TEMP%\TEInst\Plugs\TEShapePlugin.dll
%TEMP%\TEInst\Plugs\TETLFPlugin.dll
%TEMP%\TEInst\Plugs\TEWFSPlugin.dll
%TEMP%\TEInst\SGAPI\sgapi.sgworld.vbs
%TEMP%\TEInst\SkylineGlobeShell.exe
%TEMP%\TEInst\SLTerraExplorerBasic.lic
%TEMP%\TEInst\TBPlugs\bmpplg.rct
%TEMP%\TEInst\TBPlugs\CONUS.LAS
%TEMP%\TEInst\TBPlugs\CONUS.LOS
%TEMP%\TEInst\TBPlugs\ECWplg.rct
%TEMP%\TEInst\TBPlugs\gdal154.dll
%TEMP%\TEInst\TBPlugs\gdlplg.rct
%TEMP%\TEInst\TBPlugs\GISplg.rct
%TEMP%\TEInst\TBPlugs\HTCPlg.rct
%TEMP%\TEInst\TBPlugs\IMGplg.rct
%TEMP%\TEInst\TBPlugs\mfmplg.rct
%TEMP%\TEInst\TBPlugs\MPTFile.dll
%TEMP%\TEInst\TBPlugs\mptplg.rct
%TEMP%\TEInst\TBPlugs\mpuplg.rct
%TEMP%\TEInst\TBPlugs\msvcp60.dll
%TEMP%\TEInst\TBPlugs\NCScnet.dll
%TEMP%\TEInst\TBPlugs\NCSEcw.dll
%TEMP%\TEInst\TBPlugs\NCSUtil.dll
%TEMP%\TEInst\TBPlugs\nimplg.rct
%TEMP%\TEInst\TBPlugs\picplg.rct
%TEMP%\TEInst\TBPlugs\SDEPlg.rct
%TEMP%\TEInst\TBPlugs\SIDplg.rct
%TEMP%\TEInst\TBPlugs\tifplg.rct
%TEMP%\TEInst\TBPlugs\tltplg.rct
%TEMP%\TEInst\TBPlugs\UTMplg.rct
%TEMP%\TEInst\TBPlugs\WorldRect.dll
%TEMP%\TEInst\TEDetect.dll
%TEMP%\TEInst\Terra.dll
%TEMP%\TEInst\TerraCommon.dll
%TEMP%\TEInst\TerraExplorer.cab
%TEMP%\TEInst\TerraExplorer.exe
%TEMP%\TEInst\TerraExplorerX.dll
%TEMP%\TEInst\teutil.exe
%TEMP%\TEInst\tgmdx6.dll
%TEMP%\TEInst\tgmdx9.dll
%TEMP%\TEInst\Tools\Collaboration\collabelm.vbs
%TEMP%\TEInst\Tools\Collaboration\SLCU.dll
%TEMP%\TEInst\Tools\Collaboration\SLFM.dll
%TEMP%\TEInst\Tools\Collaboration\TECollaboration.dll
%TEMP%\TEInst\Tools\GPSTracking\SkyGps.dll
%TEMP%\TEInst\Tools\PyramidTool\PyramidTool.exe
%TEMP%\TEInst\Tools\PyramidTool\SLMPU.dll

Detected by UnHackMe:

MPTPLG.RCT
Default location: %TEMP%\TEINST\TBPLUGS\MPTPLG.RCT

Dropper information:
MD5: f013130f430602225210c02e97c350d6
File size: 11171544 bytes

Leave a Reply