Home » Spyware Protection » Hijacked Browser Analysis » Re: HijackThisLog Analysis - Rod » 

msreg.exe

Backdoor.Zinx - Backdoor.Zinx is a backdoor Trojan Horse that allows a hacker to use your compter as proxy and steals information. By default the Trojan opens ports 14728 and 24759.

The Trojan is launched using an .html file that contains malicious Visual Basic Script (VBS) code.

msreg.exe Removal Tips:

Navigate to the key:

HKEY_LOCAL_MACHINE \Software \Microsoft \Windows \CurrentVersion \Run

In the right pane, delete the value:

"msreg.exe"="%Windir%\msrege.exe"

Navigate to the key:

HKEY_CURRENT_USER \Software \Microsoft \Windows \CurrentVersion \Run

In the right pane, delete the value:

"putil"="%Windir%\5845.exe"

 


Mail this pageMail this page