SERVER.EXE – Trojan Eldorado

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SERVER.EXE – Trojan Eldorado removal

FileMD5Virus Alias
SERVER.EXE 031d75c7b385d20058e029c5670e6849 Trojan Eldorado
SERVER.EXE 031d75c7b385d20058e029c5670e6849 Trojan Generic
SERVER.EXE 031d75c7b385d20058e029c5670e6849 Trojan Hllw
SERVER.EXE 031d75c7b385d20058e029c5670e6849 Trojan Agent

SERVER.EXE size: 111616 bytes
SERVER.EXE hash: 031D75C7B385D20058E029C5670E6849

Created files:

%WinDir%\cmsetac.dll
%WinDir%\mstwain32.exe
%WinDir%\ntdtcstp.dll
%TEMP%\MULTIHACK 2.8.exe
%TEMP%\multiii keylog.exe
%TEMP%\multiii keylog.exe_
%TEMP%\server.exe

Autostart registry keys:

HKCU\Software\Microsoft\Windows\CurrentVersion\Run\mstwain32: %WinDir%\mstwain32.exe

Detected by UnHackMe:

SERVER.EXE
Default location: %TEMP%\SERVER.EXE

Dropper information:
MD5: 043c24683d8fd7fd253664a02d4c8a94
File size: 821834 bytes

Leave a Reply