REGSVR.EXE – Worm Autoit

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

REGSVR.EXE – Worm Autoit removal

File MD5 Virus Alias
REGSVR.EXE 35ab7b969980852989701fda220045a0 Worm Autoit
REGSVR.EXE 35ab7b969980852989701fda220045a0 Trojan SuspiciousFile
REGSVR.EXE 35ab7b969980852989701fda220045a0 Trojan Hllw
REGSVR.EXE 35ab7b969980852989701fda220045a0 Trojan Downloader
REGSVR.EXE 35ab7b969980852989701fda220045a0 Worm Sohanat
REGSVR.EXE 35ab7b969980852989701fda220045a0 Worm Autorun

REGSVR.EXE size: 1214464 bytes
REGSVR.EXE hash: 35AB7B969980852989701FDA220045A0

Created files:

%WinDir%\regsvr.exe
%SysDir%\regsvr.exe
%SysDir%\svchost .exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell: Explorer.exe regsvr.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Msn Messsenger: %WinDir%\System32\regsvr.exe

Detected by UnHackMe:

REGSVR.EXE
Default location: %WinDir%\REGSVR.EXE

Dropper information:
MD5: 35ab7b969980852989701fda220045a0
File size: 1214464 bytes

Leave a Reply