MSTWAIN32.EXE – Trojan Eldorado

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

MSTWAIN32.EXE – Trojan Eldorado removal

FileMD5Virus Alias
MSTWAIN32.EXE 031d75c7b385d20058e029c5670e6849 Trojan Eldorado
MSTWAIN32.EXE 031d75c7b385d20058e029c5670e6849 Trojan Generic
MSTWAIN32.EXE 031d75c7b385d20058e029c5670e6849 Trojan Hllw
MSTWAIN32.EXE 031d75c7b385d20058e029c5670e6849 Trojan Agent

MSTWAIN32.EXE size: 111616 bytes
MSTWAIN32.EXE hash: 031D75C7B385D20058E029C5670E6849

Created files:

%WinDir%\cmsetac.dll
%WinDir%\mstwain32.exe
%WinDir%\ntdtcstp.dll
%TEMP%\MULTIHACK 2.8.exe
%TEMP%\multiii keylog.exe
%TEMP%\multiii keylog.exe_
%TEMP%\server.exe

Autostart registry keys:

HKCU\Software\Microsoft\Windows\CurrentVersion\Run\mstwain32: %WinDir%\mstwain32.exe

Detected by UnHackMe:

MSTWAIN32.EXE
Default location: %WinDir%\MSTWAIN32.EXE

Dropper information:
MD5: 043c24683d8fd7fd253664a02d4c8a94
File size: 821834 bytes

Leave a Reply