I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:
Free DownloadFully Functional 30-day Trial. No credit card is required.
Reviews. EULA. Privacy Policy. Uninstall.
Trojan Delf
Also known as: Worm Autorun, Trojan Agent
SHA256: 82748ddbd8ced1cdacef6c4d5738cf3ea4b319e83e9703ff1ac35eefaa6e2c16
SHA1: 85aeae38a4faeb8ae949af7b788e8830167919bc
MD5: 4d0fc4571a15018821d8b3bfeecba51a
File size: 303616 bytes
Created files:
%SysDir%\install\me.exe – Trojan Delf
Trojan Delf created autostart registry keys:
HKLM\Software\Microsoft\Active Setup\Installed Components\{CLJ72JIV-0IWF-ROG7-R534-7206JN52BQ6D}\StubPath: %WinDir%\System32\install\me.exe Restart
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Policies: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C0069006E007300740061006C006C005C006D0065002E006500780065000000
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\HKLM: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C0069006E007300740061006C006C005C006D0065002E006500780065000000
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Policies: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C0069006E007300740061006C006C005C006D0065002E006500780065000000
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\HKCU: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C0069006E007300740061006C006C005C006D0065002E006500780065000000