REGSVR.EXE – Worm Autoit

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

REGSVR.EXE – Worm Autoit removal

File MD5 Virus Alias
REGSVR.EXE b98b693efc5abc41750fc95cd3b61172 Worm Autoit
REGSVR.EXE b98b693efc5abc41750fc95cd3b61172 Trojan SuspiciousFile
REGSVR.EXE b98b693efc5abc41750fc95cd3b61172 Trojan Generic
REGSVR.EXE b98b693efc5abc41750fc95cd3b61172 Trojan Click
REGSVR.EXE b98b693efc5abc41750fc95cd3b61172 Trojan Downloader
REGSVR.EXE b98b693efc5abc41750fc95cd3b61172 Worm Autorun

REGSVR.EXE size: 617343 bytes
REGSVR.EXE hash: B98B693EFC5ABC41750FC95CD3B61172

Created files:

%WinDir%\regsvr.exe
%SysDir%\regsvr.exe
%SysDir%\svchost .exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell: Explorer.exe regsvr.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Msn Messsenger: %WinDir%\System32\regsvr.exe

Detected by UnHackMe:

REGSVR.EXE
Default location: %WinDir%\REGSVR.EXE

Dropper information:
MD5: b98b693efc5abc41750fc95cd3b61172
File size: 617343 bytes

Leave a Reply