Solved! Use SYSCTL.EXE (Trojan Agent) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SYSCTL.EXE – Trojan Agent removal

FileMD5Virus Alias
SYSCTL.EXE 2a163625bdc9aa6b1fb920c332965190 Trojan Agent
SYSCTL.EXE 2a163625bdc9aa6b1fb920c332965190 Trojan MSIL
SYSCTL.EXE 2a163625bdc9aa6b1fb920c332965190 Trojan Eldorado
SYSCTL.EXE 2a163625bdc9aa6b1fb920c332965190 Trojan Downloader

SYSCTL.EXE size: 706560 bytes
SYSCTL.EXE hash: 2A163625BDC9AA6B1FB920C332965190

Created files:

%SysDir%\sysctl.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\UserInit: %WinDir%\System32\userinit.exe,%WinDir%\System32\sysctl.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\SysCtl.exe: %WinDir%\System32\sysctl.exe

Detected by UnHackMe:

SYSCTL.EXE
Default location: %SYSDIR%\SYSCTL.EXE

Dropper information:
MD5: 2a163625bdc9aa6b1fb920c332965190
File size: 706560 bytes

Leave a Reply