MQTGSVC.EXE – Trojan Small

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

MQTGSVC.EXE – Trojan Small removal

FileMD5Virus Alias
MQTGSVC.EXE 00e4cefb58c0c21328c91ad76027933e Trojan Small
MQTGSVC.EXE 00e4cefb58c0c21328c91ad76027933e Trojan Artemis
MQTGSVC.EXE 00e4cefb58c0c21328c91ad76027933e Trojan Generic
MQTGSVC.EXE 00e4cefb58c0c21328c91ad76027933e Trojan Eldorado
MQTGSVC.EXE 00e4cefb58c0c21328c91ad76027933e Trojan Downloader
MQTGSVC.EXE 00e4cefb58c0c21328c91ad76027933e Trojan Agent

MQTGSVC.EXE size: 472064 bytes
MQTGSVC.EXE hash: 00E4CEFB58C0C21328C91AD76027933E

Created files:

%WinDir%\mqtgsvc.exe
%WinDir%\System\mstsc.exe
%WinDir%\System\spoolsv.exe
%UserProfile%\Local Settings\Application Data\ieudinit.exe
%TEMP%\Twain002.Mtx

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\IEudInit: %WinDir%\System32\config\SYSTEM~1\LOCALS~1\APPLIC~1\ieudinit.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\MessageService: %WinDir%\mqtgsvc.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Mstsc: %WinDir%\System\mstsc.exe

Detected by UnHackMe:

MQTGSVC.EXE
Default location: %WinDir%\MQTGSVC.EXE

Dropper information:
MD5: 00e4cefb58c0c21328c91ad76027933e
File size: 472064 bytes

Leave a Reply