~FS80.EXE – Trojan Delf

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

~FS80.EXE – Trojan Delf removal

FileMD5Virus Alias
~FS80.EXE b8044b16c33853ffa891e3bc5cb1219c Trojan Delf

~FS80.EXE size: 207872 bytes
~FS80.EXE hash: B8044B16C33853FFA891E3BC5CB1219C

Created files:

%SysDir%\0946FF87E72B6D86A750944C3E93FE4A.EXE
%SysDir%\IExplorer.exe
%TEMP%\~fs50.exe
%TEMP%\~fs80.exe

Autostart registry keys:

HKLM\Software\Classes\txtfile\shell\open\command : 0946FF87E72B6D86A750944C3E93FE4A.EXE “%1”
HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices\IExplorer: IExplorer.exe

Detected by UnHackMe:

~FS80.EXE
Default location: %TEMP%\~FS80.EXE

Dropper information:
MD5: 0946ff87e72b6d86a750944c3e93fe4a
File size: 347648 bytes

Leave a Reply