EXPLORER.EXE – Trojan Agent

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

EXPLORER.EXE – Trojan Agent removal

File MD5 Virus Alias
EXPLORER.EXE 523c420cd416b62cfccce1520ebccd40 Trojan Agent
EXPLORER.EXE 523c420cd416b62cfccce1520ebccd40 Trojan SuspiciousFile
EXPLORER.EXE 523c420cd416b62cfccce1520ebccd40 Trojan Small

EXPLORER.EXE size: 641700 bytes
EXPLORER.EXE hash: 523C420CD416B62CFCCCE1520EBCCD40

Created files:

%WinDir%\spoolsv.exe
%SysDir%\concp32.exe
%SysDir%\explorer.exe
%SysDir%\msfmf32.exe
%SysDir%\vcl32.exe

Autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{E4883584-8B9A-11D5-EBA1-F78EEEEEE983}\StubPath: msfmf32.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\VCL: vcl32.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\VCL: vcl32.exe

Detected by UnHackMe:

EXPLORER.EXE
Default location: %SYSDIR%\EXPLORER.EXE

Dropper information:
MD5: 0d3def5faf0a91e0cd04a007dee2fe95
File size: 608932 bytes

Leave a Reply