NOTOUCH.EXE – Trojan Delf

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

NOTOUCH.EXE – Trojan Delf removal

FileMD5Virus Alias
NOTOUCH.EXE cf11b9dacec4c742478d61670a71c805 Trojan Delf
NOTOUCH.EXE cf11b9dacec4c742478d61670a71c805 Trojan Eldorado
NOTOUCH.EXE cf11b9dacec4c742478d61670a71c805 Worm Autorun
NOTOUCH.EXE cf11b9dacec4c742478d61670a71c805 Trojan Agent

NOTOUCH.EXE size: 287744 bytes

Created files:

%SysDir%\Directory\notouch.exe

Autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{S87X6GM0-14DJ-K325-RGCJ-82836O60I3RR}\StubPath: %WinDir%\System32\Directory\notouch.exe Restart
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Policies: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C004400690072006500630074006F00720079005C006E006F0074006F007500630068002E006500780065000000
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\5fdgds322: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C004400690072006500630074006F00720079005C006E006F0074006F007500630068002E006500780065000000
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Policies: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C004400690072006500630074006F00720079005C006E006F0074006F007500630068002E006500780065000000
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\ds6gf54sr5v: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C004400690072006500630074006F00720079005C006E006F0074006F007500630068002E006500780065000000

Detected by UnHackMe:

NOTOUCH.EXE
Default location: %SYSDIR%\DIRECTORY\NOTOUCH.EXE

Leave a Reply