Computer threads and malicious software description

Tiny.E

2013-02-10

Aliases: Trojan.Win32.Tiny.E

Category: Malware

Parameters: Type: Trojan; Platform: W32

Short description

Tiny.E affects Explorer.exe and creates entry start-up point in the system.

Long description

Tiny.E creates winlogon point and runkey.

It modifies the following key:

HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
Userinit=C:\WINDOWS\system32\userinit.exe

By changing it to:

Userinit=C:\WINDOWS\system32\userinit.exe, explorer.exe

Tiny.E creates the following key:

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Barsaka=explorer.exe