REGSVR.EXE – Worm Autoit

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

REGSVR.EXE – Worm Autoit removal

File MD5 Virus Alias
REGSVR.EXE cb7134223a74c92e6f9b03ae36263127 Worm Autoit
REGSVR.EXE cb7134223a74c92e6f9b03ae36263127 Trojan SuspiciousFile
REGSVR.EXE cb7134223a74c92e6f9b03ae36263127 Trojan Click
REGSVR.EXE cb7134223a74c92e6f9b03ae36263127 Trojan Downloader
REGSVR.EXE cb7134223a74c92e6f9b03ae36263127 Worm Sohanat
REGSVR.EXE cb7134223a74c92e6f9b03ae36263127 Worm Autorun

REGSVR.EXE size: 617473 bytes
REGSVR.EXE hash: CB7134223A74C92E6F9B03AE36263127

Created files:

%WinDir%\regsvr.exe
%SysDir%\regsvr.exe
%SysDir%\svchost .exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell: Explorer.exe regsvr.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Msn Messsenger: %WinDir%\System32\regsvr.exe

Detected by UnHackMe:

REGSVR.EXE
Default location: %WinDir%\REGSVR.EXE

Dropper information:
MD5: cb7134223a74c92e6f9b03ae36263127
File size: 617473 bytes

Leave a Reply