REGSVR.EXE – Worm Autoit

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

REGSVR.EXE – Worm Autoit removal

FileMD5Virus Alias
REGSVR.EXE 2ae5172880884de2d3ec0170cc0299fd Worm Autoit
REGSVR.EXE 2ae5172880884de2d3ec0170cc0299fd Suspicious File
REGSVR.EXE 2ae5172880884de2d3ec0170cc0299fd Trojan Click
REGSVR.EXE 2ae5172880884de2d3ec0170cc0299fd Trojan Downloader
REGSVR.EXE 2ae5172880884de2d3ec0170cc0299fd Worm Sohanat
REGSVR.EXE 2ae5172880884de2d3ec0170cc0299fd Worm Autorun

REGSVR.EXE size: 616960 bytes
REGSVR.EXE hash: 2AE5172880884DE2D3EC0170CC0299FD

Created files:

%WinDir%\regsvr.exe
%SysDir%\regsvr.exe
%SysDir%\svchost .exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell: Explorer.exe regsvr.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\Msn Messsenger: %WinDir%\System32\regsvr.exe

Detected by UnHackMe:

REGSVR.EXE
Default location: %WinDir%\REGSVR.EXE

Dropper information:
MD5: 2ae5172880884de2d3ec0170cc0299fd
File size: 616960 bytes

Leave a Reply