svchost.exe

The executable svchost.exe has been detected as malware by 8 anti-virus scanners. Although this file uses the name svchost.exe, this is NOT the Windows SvcHost (Service Host) distributed with the OS.
MD5:
e3ed71b2b3f0db839a6a848ade1377cb

SHA-1:
2c3c0d7d937bb02d63c4c4ff3ad40bf89a9b1e3e

Scanner detections:
8 / 68

Status:
Malware

Analysis date:
5/2/2024 6:42:52 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Agent.ARGQ
7.11.183.120

avast!
Win32:Agent-ARGQ [Trj]
2014.9-170316

AVG
Win32/DH{gRITfQNhCQ8gJCKBEw}
2018.0.2438

Comodo Security
Heur.Suspicious
20005

G Data
Win32.Trojan.Agent.J0BJG8
17.3.24

McAfee
Artemis!E3ED71B2B3F0
5600.6094

Norman
Suspicious_Gen4.EXNBL
11.20170316

Rising Antivirus
PE:Trojan.AntiVM!1.67DF
23.00.65.17314

File size:
535.4 KB (548,263 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\documents and settings\administrador\temp\ixp000.tmp\svchost.exe

File PE Metadata
Compilation timestamp:
6/22/2009 9:25:01 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.56

Entry address:
0x1240

Entry point:
55, 89, E5, 83, EC, 08, C7, 04, 24, 02, 00, 00, 00, FF, 15, 1C, 14, 46, 00, E8, A8, FE, FF, FF, 90, 8D, B4, 26, 00, 00, 00, 00, 55, 8B, 0D, 64, 14, 46, 00, 89, E5, 5D, FF, E1, 8D, 74, 26, 00, 55, 8B, 0D, 48, 14, 46, 00, 89, E5, 5D, FF, E1, 90, 90, 90, 90, 55, 89, E5, 5D, E9, B7, 0D, 01, 00, 90, 90, 90, 90, 90, 90, 90, 55, 89, E5, 83, EC, 28, 8B, 45, 10, 89, 04, 24, E8, BF, 7D, 01, 00, 48, 89, 45, FC, 8B, 45, 0C, 48, 89, 45, F4, 8D, 45, F4, 89, 44, 24, 04, 8D, 45, FC, 89, 04, 24, E8, 52, 0D, 04, 00, 8B, 00...
 
[+]

Packer / compiler:
MingWin32

Code size:
275.5 KB (282,112 bytes)

Remove svchost.exe - Powered by Reason Core Security