REGEDITLIB32.EXE – Trojan ZBot

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

REGEDITLIB32.EXE – Trojan ZBot removal

File MD5 Virus Alias
REGEDITLIB32.EXE 0360d5f89ba79bceedcb47936a715e8d Trojan ZBot
REGEDITLIB32.EXE 0360d5f89ba79bceedcb47936a715e8d Trojan SuspiciousFile
REGEDITLIB32.EXE 0360d5f89ba79bceedcb47936a715e8d Trojan Eldorado
REGEDITLIB32.EXE 0360d5f89ba79bceedcb47936a715e8d Trojan Kryptik
REGEDITLIB32.EXE 0360d5f89ba79bceedcb47936a715e8d Trojan Banker
REGEDITLIB32.EXE 0360d5f89ba79bceedcb47936a715e8d Trojan Crypt

REGEDITLIB32.EXE size: 1441432 bytes
REGEDITLIB32.EXE hash: 0360D5F89BA79BCEEDCB47936A715E8D

Created files:

%WinDir%\regeditlib32.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\shell: Explorer.exe %WinDir%\regeditlib32.exe

Detected by UnHackMe:

REGEDITLIB32.EXE
Default location: %WinDir%\REGEDITLIB32.EXE

Dropper information:
MD5: 808d21ccba3d19c17113785a24ab4efe
File size: 878968 bytes

Leave a Reply