HOST32.EXE – Trojan ZBot

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

HOST32.EXE – Trojan ZBot removal

FileMD5Virus Alias
HOST32.EXE 475cac08bdc4e882c31094409605daee Trojan ZBot
HOST32.EXE 475cac08bdc4e882c31094409605daee Backdoor Bredolab
HOST32.EXE 475cac08bdc4e882c31094409605daee Trojan Sinowal
HOST32.EXE 475cac08bdc4e882c31094409605daee Worm AMN
HOST32.EXE 475cac08bdc4e882c31094409605daee Trojan Crypt

HOST32.EXE size: 2071288 bytes
HOST32.EXE hash: 475CAC08BDC4E882C31094409605DAEE

Created files:

%WinDir%\host32.exe
%SysDir%\termsrv.dll.old

Autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit: %WinDir%\System32\userinit.exe,%WinDir%\host32.exe,

Detected by UnHackMe:

HOST32.EXE
Default location: %WinDir%\HOST32.EXE

Dropper information:
MD5: 2edc28a1d50e8371e573a35f519d9c57
File size: 1229104 bytes

Leave a Reply