REGSVR.EXE – Worm Autoit

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

REGSVR.EXE – Worm Autoit removal

FileMD5Virus Alias
REGSVR.EXE 0d27abf8df85007723d3f6b2c147839e Worm Autoit
REGSVR.EXE 0d27abf8df85007723d3f6b2c147839e Suspicious File
REGSVR.EXE 0d27abf8df85007723d3f6b2c147839e Trojan Generic
REGSVR.EXE 0d27abf8df85007723d3f6b2c147839e Trojan Hllw
REGSVR.EXE 0d27abf8df85007723d3f6b2c147839e Trojan Downloader
REGSVR.EXE 0d27abf8df85007723d3f6b2c147839e Worm Sohanat

REGSVR.EXE size: 1193984 bytes
REGSVR.EXE hash: 0D27ABF8DF85007723D3F6B2C147839E

Created files:

%WinDir%\regsvr.exe
%SysDir%\regsvr.exe
%SysDir%\svchost .exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell: Explorer.exe regsvr.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Msn Messsenger: %WinDir%\System32\regsvr.exe

Detected by UnHackMe:

REGSVR.EXE
Default location: %WinDir%\REGSVR.EXE

Dropper information:
MD5: 0d27abf8df85007723d3f6b2c147839e
File size: 1193984 bytes

Leave a Reply