Solved! Use REGSVR.EXE (Worm Autoit) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

REGSVR.EXE – Worm Autoit removal

FileMD5Virus Alias
REGSVR.EXE e73a0f1352bff529fa3cff04f990798e Worm Autoit
REGSVR.EXE e73a0f1352bff529fa3cff04f990798e Trojan SuspiciousFile
REGSVR.EXE e73a0f1352bff529fa3cff04f990798e Trojan Click
REGSVR.EXE e73a0f1352bff529fa3cff04f990798e Trojan Downloader
REGSVR.EXE e73a0f1352bff529fa3cff04f990798e Worm Sohanat
REGSVR.EXE e73a0f1352bff529fa3cff04f990798e Worm Vobfus

REGSVR.EXE size: 1988257 bytes
REGSVR.EXE hash: E73A0F1352BFF529FA3CFF04F990798E

Created files:

%WinDir%\regsvr.exe
%SysDir%\regsvr.exe
%SysDir%\svchost .exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell: Explorer.exe regsvr.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Msn Messsenger: %WinDir%\System32\regsvr.exe

Detected by UnHackMe:

REGSVR.EXE
Default location: %WinDir%\REGSVR.EXE

Dropper information:
MD5: e73a0f1352bff529fa3cff04f990798e
File size: 1988257 bytes

Leave a Reply