SoftwareTipsandTricks.com
Home Forums Windows 7 Security Tips
Forums

Windows 7
Windows Vista
Windows XP

Security Tips
Troubleshooting
Keyboard Shortcuts
Encyclopedia


Drivers

Internet Terms
Computer Terms

File Extensions (75)
File Extensions (15K+)

Startup Applications
Necessary Files
Useless Files
At Your Option Files
Dangerous Files
Browser Objects

DLL Files
SYS Files
INF Files
OCX Files
VXD Files

Virus Database
Virus Warnings

Easter Eggs
Tips and Tricks
Articles
Hot Downloads


Privacy Policy
Contact Us







  msrege.exe

Name msrege.exe

Description

Backdoor.Zinx is a backdoor Trojan Horse that allows a hacker to use your compter as proxy and steals information.
By default it opens ports 14728 and 24759.
The Trojan is launched using an .html file that contains malicious Visual Basic Script (VBS) code.

When the .html file is opened, it does following:
Drops the q.vbs file and executes it. The file does the following:
Drops x.exe and executes it, which terminates security programs.
Downloads q.exe from a predetermined Web site and executes it.

Drops and executes the following files:
%Windir%\5845.exe
%Windir%\msreg.exe
%System%\svchostc.exe
%System%\svchosts.exe

Downloads configuration information from predetermined Web sites, and then runs svchostc.exe and svchosts.exe with these configurations.
Connects to a predetermined SMTP server and sends email message to a certain email address.

The message contains following information:
- Operating system version
- Registered user name
- Organization name
- AIM user accounts
- ICQ accounts
- Trillian accounts
- Ghisler Windows Commander and Total Commander information
- SMTP and POP email accounts and passwords

Automatical remove:
Use antivirus (also check How To Remove section)Startup Opimizer.
And navigate to the %System% folder and delete the svchosts.exe and svchostc.exe files.


Still have a problem? Ask for help at our discussion forum.



Search Dangerous Files :
 

: : Recent posts at Forums : :

Aleksej Levin, Denis Novikov, Mark Yerman - Закры&

take advantage from your way of life insurance expertise

latest news of bollywood

looking for suggestions about technology weblogs look into these kind of fantastic strategies

ипотека без п&

Asiame scam

vidmate app

Порно фото безмездно, эротические секс фо

Loose galleries

Open adult galleries

Кто то взлома&

Кто то взлома&

oeatjxq

Кредит наличн

Vidmate absolutely free download for android, ios and computer system | Vidmate Down load

Renewed plat

Pictures from community networks

Stared new prepare

Renewed install

Matured placement

Ремонт АКПП

Pictures from venereal networks

My brand-new work

Быстрый выкуп

New spot

Unencumbered galleries

Loose adult galleries

Unshackle galleries

Секс фото галереи для взрослых

Unencumbered galleries




SoftwareTipsandTricks, All Rights Reserved.