The file MESSAGE.EXE is identified as a virus dropper.
The dropper MESSAGE.EXE is used for downloading and installing other malware, Trojans, viruses by the commands received from the Command Center.
The file MESSAGE.EXE loads into the computer memory and tries to connect to the dangerous web site.
Usually the MESSAGE.EXE dropper does not infect the files on the computer and does not replicate itself on other computers.
Kill the MESSAGE.EXE process and delete the file MESSAGE.EXE.
Malware Analysis of MESSAGE.EXE
Full path on a computer: %PROGRAMFILES%\SYSTEMSCHEDULER\MESSAGE.EXE
Detected by UnHackMe:
MESSAGE.EXE
Default location: %PROGRAMFILES%\SYSTEMSCHEDULER\MESSAGE.EXE
Removal Results: Success
Number of reboot: 1
MESSAGE.EXE is known as:
Trojan PAK_Generic
MESSAGE.EXE hash:
-
MD5: 3147687DB440F3C98B3A299C48AFE032
How to quickly detect MESSAGE.EXE presence?
Files:
- %COMMONPROGRAMS%\SYSTEM SCHEDULER\SYSTEM SCHEDULER ON THE WEB.LNK
- %COMMONPROGRAMS%\SYSTEM SCHEDULER\SYSTEM SCHEDULER.LNK
- %COMMONPROGRAMS%\SYSTEM SCHEDULER\UNINSTALL SYSTEM SCHEDULER.LNK
- %PROGRAMFILES%\SYSTEMSCHEDULER\CLOCK.ICO
- %PROGRAMFILES%\SYSTEMSCHEDULER\MESSAGE.EXE