MSTSC.EXE – Trojan Small

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

MSTSC.EXE – Trojan Small removal

FileMD5Virus Alias
MSTSC.EXE 00e4cefb58c0c21328c91ad76027933e Trojan Small
MSTSC.EXE 00e4cefb58c0c21328c91ad76027933e Trojan Artemis
MSTSC.EXE 00e4cefb58c0c21328c91ad76027933e Trojan Generic
MSTSC.EXE 00e4cefb58c0c21328c91ad76027933e Trojan Eldorado
MSTSC.EXE 00e4cefb58c0c21328c91ad76027933e Trojan Downloader
MSTSC.EXE 00e4cefb58c0c21328c91ad76027933e Trojan Agent

MSTSC.EXE size: 472064 bytes
MSTSC.EXE hash: 00E4CEFB58C0C21328C91AD76027933E

Created files:

%WinDir%\mqtgsvc.exe
%WinDir%\System\mstsc.exe
%WinDir%\System\spoolsv.exe
%UserProfile%\Local Settings\Application Data\ieudinit.exe
%TEMP%\Twain002.Mtx

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\IEudInit: %WinDir%\System32\config\SYSTEM~1\LOCALS~1\APPLIC~1\ieudinit.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\MessageService: %WinDir%\mqtgsvc.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Mstsc: %WinDir%\System\mstsc.exe

Detected by UnHackMe:

MSTSC.EXE
Default location: %WinDir%\SYSTEM\MSTSC.EXE

Dropper information:
MD5: 00e4cefb58c0c21328c91ad76027933e
File size: 472064 bytes

Leave a Reply