I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
Trojan Zbot
Also known as: Worm Koobface, Trojan Kryptik
SHA256: a07a7aaa6a72ecb425f92838dc2819d200ca0cdac5f50839dd6477be986fb99f
SHA1: a95984f363929901e6bd4d75fc9788ae7ec42aa0
MD5: 499be927a18f91d718f6c4b2c787ab14
File size: 194560 bytes
Created files:
C:\windows\mdm.exe – Trojan Zbot
Trojan Zbot created autostart registry keys:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Microsoft Firevall Engine: c:\windows\mdm.exe
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Terminal Server\Install\Software\Microsoft\Windows\CurrentVersion\Run\Microsoft Firevall Engine: c:\windows\mdm.exe
HKLM\System\CurrentControlSet\Services\wuauserv\Start: 04000000
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Microsoft Firevall Engine: c:\windows\mdm.exe