DESKTOPLAYER.EXE – Trojan ZBot

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

DESKTOPLAYER.EXE – Trojan ZBot removal

FileMD5Virus Alias
DESKTOPLAYER.EXE ff5e1f27193ce51eec318714ef038bef Trojan ZBot
DESKTOPLAYER.EXE ff5e1f27193ce51eec318714ef038bef Trojan XPACK
DESKTOPLAYER.EXE ff5e1f27193ce51eec318714ef038bef Trojan Eldorado
DESKTOPLAYER.EXE ff5e1f27193ce51eec318714ef038bef Worm AMN
DESKTOPLAYER.EXE ff5e1f27193ce51eec318714ef038bef Trojan Krap
DESKTOPLAYER.EXE ff5e1f27193ce51eec318714ef038bef Trojan Agent

DESKTOPLAYER.EXE size: 56320 bytes
DESKTOPLAYER.EXE hash: FF5E1F27193CE51EEC318714EF038BEF

Created files:

%Program Files%\Microsoft\DesktopLayer.exe
%Program Files%\Microsoft\DesktopLayerSrv.exe
%Common AppData%\Apple Computer\Installer Cache\Safari 5.34.52.7\SetupAdmin.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit: c:\windows\System32\userinit.exe,,c:\program files\Microsoft\desktoplayer.exe

Detected by UnHackMe:

DESKTOPLAYER.EXE
Default location: %PROGRAM FILES%\MICROSOFT\DESKTOPLAYER.EXE

Dropper information:
MD5: 0648e4f3ff1d676695d06aed8918181a
File size: 114176 bytes

Leave a Reply