We checked up the file RREGSVR32.EXE and found it hazardous.
The file RREGSVR32.EXE must be deleted from the system immediately.
Kill the process RREGSVR32.EXE and remove RREGSVR32.EXE from the Windows startup.
Malware Analysis of RREGSVR32.EXE
Full path on a computer: %SYSDIR%\RREGSVR32.EXE
Detected by UnHackMe:
RREGSVR32.EXE
Default location: %SYSDIR%\RREGSVR32.EXE
Removal Results: Success
Number of reboot: 1
RREGSVR32.EXE is known as:
Trojan MulDrop4
How to quickly detect RREGSVR32.EXE presence?
Files:
- %TEMP%\IS-DCQBF.TMP\1651123491.TMP
- %TEMP%\1651123491.BIN
- %TEMP%\IS-P4INJ.TMP\_ISETUP\_REGDLL.TMP
- %TEMP%\IS-P4INJ.TMP\ISXDL.DLL
- %SYSDIR%\RREGSVR32.EXE