SPOOLSV.EXE – Trojan Small

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SPOOLSV.EXE – Trojan Small removal

FileMD5Virus Alias
SPOOLSV.EXE 25d53e46bcfefa21007980c52260e7de Trojan Small
SPOOLSV.EXE 25d53e46bcfefa21007980c52260e7de Trojan Eldorado
SPOOLSV.EXE 25d53e46bcfefa21007980c52260e7de Trojan Downloader
SPOOLSV.EXE 25d53e46bcfefa21007980c52260e7de Trojan Graftor
SPOOLSV.EXE 25d53e46bcfefa21007980c52260e7de Trojan Agent
SPOOLSV.EXE 25d53e46bcfefa21007980c52260e7de Trojan Crypt

SPOOLSV.EXE size: 476672 bytes
SPOOLSV.EXE hash: 25D53E46BCFEFA21007980C52260E7DE

Created files:

%WinDir%\smss.exe
%UserProfile%\Local Settings\Application Data\Microsoft\mqtgsvc.exe
%UserProfile%\Local Settings\Application Data\Microsoft\mstsc.exe
%UserProfile%\Local Settings\Application Data\spoolsv.exe
%TEMP%\Twain002.Mtx

Autostart registry keys:

HKCU\Software\Microsoft\Windows NT\CurrentVersion\Windows\load: %WinDir%\System32\config\SYSTEM~1\LOCALS~1\APPLIC~1\spoolsv.exe

Detected by UnHackMe:

SPOOLSV.EXE
Default location: %LOCAL APPDATA%\SPOOLSV.EXE

Dropper information:
MD5: 25d53e46bcfefa21007980c52260e7de
File size: 476672 bytes

Leave a Reply