MSTINIT.EXE – Trojan Small

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

MSTINIT.EXE – Trojan Small removal

FileMD5Virus Alias
MSTINIT.EXE 14a88914fba4ba89bc899e2f024c52c0 Trojan Small
MSTINIT.EXE 14a88914fba4ba89bc899e2f024c52c0 Trojan BadReputation
MSTINIT.EXE 14a88914fba4ba89bc899e2f024c52c0 Trojan SuspiciousFile
MSTINIT.EXE 14a88914fba4ba89bc899e2f024c52c0 Trojan XPACK
MSTINIT.EXE 14a88914fba4ba89bc899e2f024c52c0 Trojan Eldorado
MSTINIT.EXE 14a88914fba4ba89bc899e2f024c52c0 Trojan Downloader

MSTINIT.EXE size: 465408 bytes
MSTINIT.EXE hash: 14A88914FBA4BA89BC899E2F024C52C0

Created files:

%WinDir%\cmstp.exe
%WinDir%\esentutl.exe
%WinDir%\mstinit.exe
%WinDir%\System\winlogon.exe
%Local AppData%\Microsoft\lsm.exe
%TEMP%\Twain002.Mtx

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Task Scheduler: %WinDir%\mstinit.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\EseNtUtl: %WinDir%\esentutl.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\lsm service: %WinDir%\System32\config\Systemprofile\Local Settings\Application Data\Microsoft\lsm.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Microsoft Connection Manager: %WinDir%\cmstp.exe

Detected by UnHackMe:

MSTINIT.EXE
Default location: %WinDir%\MSTINIT.EXE

Dropper information:
MD5: 14a88914fba4ba89bc899e2f024c52c0
File size: 465408 bytes

Leave a Reply