SVCHOST.EXE – Trojan Agent

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SVCHOST.EXE – Trojan Agent removal

FileMD5Virus Alias
SVCHOST.EXE 829a353433dce679a03df07b47155ef6 Trojan Agent
SVCHOST.EXE 829a353433dce679a03df07b47155ef6 Trojan SuspiciousFile
SVCHOST.EXE 829a353433dce679a03df07b47155ef6 Trojan Small

SVCHOST.EXE size: 298741 bytes
SVCHOST.EXE hash: 829A353433DCE679A03DF07B47155EF6

Created files:

%WinDir%\svchost.exe
%SysDir%\concp32.exe
%SysDir%\explorer.exe
%SysDir%\msgmb32.exe
%SysDir%\vcl32.exe

Autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{E4883584-8B9A-11D5-EBA1-F78EEEEEE983}\StubPath: msgmb32.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\VCL: vcl32.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\VCL: vcl32.exe

Detected by UnHackMe:

SVCHOST.EXE
Default location: %WinDir%\SVCHOST.EXE

Dropper information:
MD5: 0ac7db5d1035f3084d11d056e4238504
File size: 293923 bytes

Leave a Reply