Trojan ZBot – Server.exe – 1ae3050bb509b37766dbb28f1639034c

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan ZBot
Also known as: Trojan Crypt, Trojan Delf
SHA256: 5ef124be067a2e07380b7df818dc2940f5768a1683297769576ed80703f7af0e
SHA1: bea7c3d0edcd06c012fc58156c9c46d66774f8c6
MD5: 1ae3050bb509b37766dbb28f1639034c
File size: 19456 bytes

Created files:

%WinDir%\InstallDir\Server.exe – Trojan ZBot

Trojan ZBot created autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{5460C4DF-B266-909E-CB58-E32B79832EB2}\StubPath: 43003A005C00570049004E0044004F00570053005C0049006E007300740061006C006C004400690072005C005300650072007600650072002E00650078006500200072006500730074006100720074000000
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\HKLM: 43003A005C00570049004E0044004F00570053005C0049006E007300740061006C006C004400690072005C005300650072007600650072002E006500780065000000
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\HKCU: 43003A005C00570049004E0044004F00570053005C0049006E007300740061006C006C004400690072005C005300650072007600650072002E006500780065000000

Leave a Reply