SPOOLSV.EXE – Trojan Agent

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SPOOLSV.EXE – Trojan Agent removal

FileMD5Virus Alias
SPOOLSV.EXE 76f5f25658d8418eccff98fa6efb33f6 Trojan Agent
SPOOLSV.EXE 76f5f25658d8418eccff98fa6efb33f6 Trojan SuspiciousFile
SPOOLSV.EXE 76f5f25658d8418eccff98fa6efb33f6 Trojan Small

SPOOLSV.EXE size: 248639 bytes
SPOOLSV.EXE hash: 76F5F25658D8418ECCFF98FA6EFB33F6

Created files:

%WinDir%\spoolsv.exe
%SysDir%\concp32.exe
%SysDir%\explorer.exe
%SysDir%\msyam32.exe
%SysDir%\vcl32.exe

Autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{E4883584-8B9A-11D5-EBA1-F78EEEEEE983}\StubPath: msyam32.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\VCL: vcl32.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\VCL: vcl32.exe

Detected by UnHackMe:

SPOOLSV.EXE
Default location: %WinDir%\SPOOLSV.EXE

Dropper information:
MD5: 2d9451640c0d0a56c85027d558799b61
File size: 244226 bytes

Leave a Reply