SYSTEM.PIF – Trojan Agent

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit card is required. Reviews. EULA. Privacy Policy.

SYSTEM.PIF – Trojan Agent removal

File MD5 Virus Alias
SYSTEM.PIF 3afa5ee8e44007d439b795a89a4b95f4 Trojan Agent
SYSTEM.PIF 3afa5ee8e44007d439b795a89a4b95f4 Trojan Generic

SYSTEM.PIF size: 361904 bytes
SYSTEM.PIF hash: 3AFA5EE8E44007D439B795A89A4B95F4

Created files:

%AppData%\InstallDir\help.exe
%UserProfile%\Start Menu\Programs\Startup\system.pif
%Common Startmenu%\Programs\Startup\system.pif

Autostart registry keys:

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\help: %WinDir%\System32\config\Systemprofile\Application Data\InstallDir\help.exeSoftware\Microsoft\Windows\CurrentVersion\Explorer\Shell F
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\help: %WinDir%\System32\config\Systemprofile\Application Data\InstallDir\help.exeSoftware\Microsoft\Windows\CurrentVersion\Explorer\Shell F

Detected by UnHackMe:

SYSTEM.PIF
Default location: %USERPROFILE%\START MENU\PROGRAMS\STARTUP\SYSTEM.PIF

Dropper information:
MD5: 3afa5ee8e44007d439b795a89a4b95f4
File size: 361904 bytes

Leave a Reply