SVCHOST.EXE – Trojan Agent

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

SVCHOST.EXE – Trojan Agent removal

File MD5 Virus Alias
SVCHOST.EXE 0b3cba8ad054e07bd5af65482a6a9aa7 Trojan Agent
SVCHOST.EXE 0b3cba8ad054e07bd5af65482a6a9aa7 Trojan SuspiciousFile
SVCHOST.EXE 0b3cba8ad054e07bd5af65482a6a9aa7 Backdoor RBot
SVCHOST.EXE 0b3cba8ad054e07bd5af65482a6a9aa7 Trojan Binder

SVCHOST.EXE size: 14103 bytes
SVCHOST.EXE hash: 0B3CBA8AD054E07BD5AF65482A6A9AA7

Created files:

%WinDir%\svchost.exe

Autostart registry keys:

HKLM\Software\Microsoft\ACTIVE SETUP\INSTALLED COMPONENTS\{2B1D7B7B-7AC4-4CA6-7CA3-7A6B0A2B5A5E}\StubPath: %WinDir%\svchost.exe 2
HKLM\Software\Microsoft\Windows\CurrentVersion\RUN\flux-special: %WinDir%\svchost.exe
HKLM\Software\Microsoft\Windows\CurrentVersion\RUNONCE\*flux-special: %WinDir%\svchost.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\RUN\flux-special: %WinDir%\svchost.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\RUNONCE\*flux-special: %WinDir%\svchost.exe

Detected by UnHackMe:

SVCHOST.EXE
Default location: %WinDir%\SVCHOST.EXE

Dropper information:
MD5: 100f8225a70bad99bfdd583578b5b37e
File size: 23965 bytes

Leave a Reply