SVCHOST.COM – Trojan Agent

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SVCHOST.COM – Trojan Agent removal

FileMD5Virus Alias
SVCHOST.COM 8568c7b661fa49846dcb130f12393f07 Trojan Agent

SVCHOST.COM size: 41472 bytes

Created files:

%WinDir%\svchost.com
%TEMP%\3582-490\50030A5CB5A273B1DE91D102A9A11D31.EXE
%Local AppData%\Google\Chrome\Application\17.0.963.56\chrome_frame_helper.exe
%Local AppData%\Google\Chrome\Application\17.0.963.56\chrome_launcher.exe
%Local AppData%\Google\Chrome\Application\17.0.963.56\Installer\setup.exe
%Local AppData%\Google\Chrome\Application\17.0.963.56\nacl64.exe
%Local AppData%\Google\Chrome\Application\17.0.963.79\chrome_frame_helper.exe
%Local AppData%\Google\Chrome\Application\17.0.963.79\chrome_launcher.exe
%Local AppData%\Google\Chrome\Application\17.0.963.79\Installer\setup.exe
%Local AppData%\Google\Chrome\Application\17.0.963.79\nacl64.exe
%Local AppData%\Google\Chrome\Application\chrome.exe
%Local AppData%\Google\Update\1.3.21.123\GoogleCrashHandler.exe
%Local AppData%\Google\Update\1.3.21.123\GoogleCrashHandler64.exe
%Local AppData%\Google\Update\1.3.21.123\GoogleUpdate.exe
%Local AppData%\Google\Update\1.3.21.123\GoogleUpdateBroker.exe
%Local AppData%\Google\Update\1.3.21.123\GoogleUpdateOnDemand.exe
%Local AppData%\Google\Update\1.3.21.123\GoogleUpdateSetup.exe
%Local AppData%\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.21.123\GoogleUpdateSetup.exe
%Local AppData%\Google\Update\GoogleUpdate.exe
%SysDir%\config\systemprofile\Local Settings\Temp\GUMC1.tmp\GoogleCrashHandler.exe
%SysDir%\config\systemprofile\Local Settings\Temp\GUMC1.tmp\GoogleCrashHandler64.exe
%SysDir%\config\systemprofile\Local Settings\Temp\GUMC1.tmp\GoogleUpdate.exe
%SysDir%\config\systemprofile\Local Settings\Temp\GUMC1.tmp\GoogleUpdateBroker.exe
%SysDir%\config\systemprofile\Local Settings\Temp\GUMC1.tmp\GoogleUpdateOnDemand.exe
%SysDir%\config\systemprofile\Local Settings\Temp\{DEA4CC8E-1159-466C-95D6-23DCAE20CBCC}\GoogleCrashHandler.exe
%SysDir%\config\systemprofile\Local Settings\Temp\{DEA4CC8E-1159-466C-95D6-23DCAE20CBCC}\GoogleCrashHandler64.exe
%SysDir%\config\systemprofile\Local Settings\Temp\{DEA4CC8E-1159-466C-95D6-23DCAE20CBCC}\GoogleUpdate.exe
%SysDir%\config\systemprofile\Local Settings\Temp\{DEA4CC8E-1159-466C-95D6-23DCAE20CBCC}\GoogleUpdateBroker.exe
%SysDir%\config\systemprofile\Local Settings\Temp\{DEA4CC8E-1159-466C-95D6-23DCAE20CBCC}\GoogleUpdateOnDemand.exe
%Temporary Internet Files%\Content.IE5\CL2ZOD6F\ChromeSetup[1].exe
%Temporary Internet Files%\Content.IE5\CL2ZOD6F\ChromeSetup[2].exe
%Temporary Internet Files%\Content.IE5\W56ZW5UF\Opera_1161_int_Setup[1].exe
%SysDir%\config\systemprofile\My Documents\Opera_1161_int_Setup.exe

Detected by UnHackMe:

SVCHOST.COM
Default location: %WinDir%\SVCHOST.COM

Dropper information:
MD5: 50030a5cb5a273b1de91d102a9a11d31
File size: 567423 bytes

Leave a Reply