MSECP32.EXE – Trojan Agent

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

MSECP32.EXE – Trojan Agent removal

FileMD5Virus Alias
MSECP32.EXE 63191f06a7498984d12faa7ef837f7f8 Trojan Agent
MSECP32.EXE 63191f06a7498984d12faa7ef837f7f8 Trojan SuspiciousFile
MSECP32.EXE 63191f06a7498984d12faa7ef837f7f8 Trojan Small

MSECP32.EXE size: 687560 bytes
MSECP32.EXE hash: 63191F06A7498984D12FAA7EF837F7F8

Created files:

%WinDir%\spoolsv.exe
%SysDir%\concp32.exe
%SysDir%\explorer.exe
%SysDir%\msecp32.exe
%SysDir%\vcl32.exe

Autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{E4883584-8B9A-11D5-EBA1-F78EEEEEE983}\StubPath: msecp32.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\VCL: vcl32.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\VCL: vcl32.exe

Detected by UnHackMe:

MSECP32.EXE
Default location: %SYSDIR%\MSECP32.EXE

Dropper information:
MD5: 0ebef3d05aa7480b31336f256566e191
File size: 660557 bytes

Leave a Reply