I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
SYSHOST.EXE – Trojan ZBot removal
File | MD5 | Virus Alias |
---|---|---|
SYSHOST.EXE | 00a8597a953a9c19b715ca40989fa5d9 | Trojan ZBot |
SYSHOST.EXE | 00a8597a953a9c19b715ca40989fa5d9 | Trojan SuspiciousFile |
SYSHOST.EXE | 00a8597a953a9c19b715ca40989fa5d9 | Trojan Eldorado |
SYSHOST.EXE | 00a8597a953a9c19b715ca40989fa5d9 | Fake Antivirus Winwebsec |
SYSHOST.EXE | 00a8597a953a9c19b715ca40989fa5d9 | Trojan Lethic |
SYSHOST.EXE | 00a8597a953a9c19b715ca40989fa5d9 | Trojan Agent |
SYSHOST.EXE size: 76800 bytes
SYSHOST.EXE hash: 00A8597A953A9C19B715CA40989FA5D9
Created files:
%WinDir%\Installer\{47C21C4D-CB25-DF6C-DAE2-59F3BAC16ED2}\syshost.exe
Autostart registry keys:
HKLM\System\CurrentControlSet\Services\syshost32\Type: 10000000
HKLM\System\CurrentControlSet\Services\syshost32\Start: 02000000
HKLM\System\CurrentControlSet\Services\syshost32\ImagePath: “%WinDir%\Installer\{47C21C4D-CB25-DF6C-DAE2-59F3BAC16ED2}\syshost.exe” /service
Detected by UnHackMe:
SYSHOST.EXE
Default location: %WinDir%\INSTALLER\{47C21C4D-CB25-DF6C-DAE2-59F3BAC16ED2}\SYSHOST.EXE
Dropper information:
MD5: 00a8597a953a9c19b715ca40989fa5d9
File size: 76800 bytes