Ok Charley,
I mistakenly assumed your advice was somehow connected to the HJT-Log
But imho the malware-intrusion via MessageService is rather related to the old pebcak-problem