SDRA64.EXE – Trojan ZBot

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

SDRA64.EXE – Trojan ZBot removal

File MD5 Virus Alias
SDRA64.EXE 1813a96ce6d208616fcd0ee9280ba000 Trojan ZBot
SDRA64.EXE 1813a96ce6d208616fcd0ee9280ba000 Trojan Eldorado
SDRA64.EXE 1813a96ce6d208616fcd0ee9280ba000 Trojan Panda
SDRA64.EXE 1813a96ce6d208616fcd0ee9280ba000 Trojan Sinowal
SDRA64.EXE 1813a96ce6d208616fcd0ee9280ba000 Trojan Crypt

SDRA64.EXE size: 502272 bytes
SDRA64.EXE hash: 1813A96CE6D208616FCD0EE9280BA000

Created files:

%SysDir%\sdra64.exe

Autostart registry keys:

HKLM\Software\Microsoft\windows nt\currentversion\winlogon\userinit: %WinDir%\System32\userinit.exe,%WinDir%\System32\sdra64.exe,

Detected by UnHackMe:

SDRA64.EXE
Default location: %SYSDIR%\SDRA64.EXE

Dropper information:
MD5: 2ff568a448d0d40c8a090345af7e0684
File size: 88064 bytes

Leave a Reply