Solved! Use MSGRF32.EXE (Trojan Agent) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

MSGRF32.EXE – Trojan Agent removal

FileMD5Virus Alias
MSGRF32.EXE dc7334ab94291da942f08e50c7d4ff83 Trojan Agent
MSGRF32.EXE dc7334ab94291da942f08e50c7d4ff83 Trojan Small

MSGRF32.EXE size: 226268 bytes
MSGRF32.EXE hash: DC7334AB94291DA942F08E50C7D4FF83

Created files:

%WinDir%\svchost.exe
%SysDir%\concp32.exe
%SysDir%\explorer.exe
%SysDir%\msgrf32.exe
%SysDir%\vcl32.exe

Autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{E4883584-8B9A-11D5-EBA1-F78EEEEEE983}\StubPath: msgrf32.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\VCL: vcl32.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\VCL: vcl32.exe

Detected by UnHackMe:

MSGRF32.EXE
Default location: %SYSDIR%\MSGRF32.EXE

Dropper information:
MD5: 855467f5b359ad0c7b51238f8acea2bb
File size: 218836 bytes

Leave a Reply