Trojan ZBot – cmd.exe – 20ebc724a3af95649d9cdc131a96f6fe

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan ZBot
Also known as: Trojan Generic, Trojan Agent
SHA256: 8397f0112310c6a16da004369168fadda34f2a4b29dcfcfee9879f6e90ed7e33
SHA1: 19fd3ca19e952b2b732196420855416781a6fc5c
MD5: 20ebc724a3af95649d9cdc131a96f6fe
File size: 867514 bytes

Created files:

%Temp%\cmd.exe – Trojan ZBot
%Temp%\ikat.exe – Trojan ZBot
%Temp%\ikatrunner.exe – Trojan ZBot
%Temp%\localcmd_executor.exe – Trojan ZBot
%Temp%\startbar.exe – Trojan ZBot

Trojan ZBot created autostart registry keys:

HKLM\System\CurrentControlSet\Services\testsvc\Type: 10010000
HKLM\System\CurrentControlSet\Services\testsvc\Start: 03000000
HKLM\System\CurrentControlSet\Services\testsvc\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\testsvc\ImagePath: cmd /K start

Leave a Reply