Solved! Use SIRC4.EXE (Trojan Delf) Removal Guide

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SIRC4.EXE – Trojan Delf removal

FileMD5Virus Alias
SIRC4.EXE 1a42d7e386c341fafe05c4ddd0c0b9a1 Trojan Delf
SIRC4.EXE 1a42d7e386c341fafe05c4ddd0c0b9a1 Trojan Hlux
SIRC4.EXE 1a42d7e386c341fafe05c4ddd0c0b9a1 Trojan SuspiciousFile
SIRC4.EXE 1a42d7e386c341fafe05c4ddd0c0b9a1 Trojan Eldorado
SIRC4.EXE 1a42d7e386c341fafe05c4ddd0c0b9a1 Trojan Agent
SIRC4.EXE 1a42d7e386c341fafe05c4ddd0c0b9a1 Trojan Delphi

SIRC4.EXE size: 444855 bytes
SIRC4.EXE hash: 1A42D7E386C341FAFE05C4DDD0C0B9A1

Created files:

%SysDir%\sIRC4.exe
%SysDir%\xdccPrograms\KillOK.exe
%SysDir%\xdccPrograms\Network Setup Wizard.exe
%SysDir%\xdccPrograms\Opera_1161_int_Setup.exe
%SysDir%\xdccPrograms\SafariSetup.exe
%SysDir%\xdccPrograms\Wireless Network Setup Wizard.exe

Autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\shell: Explorer.exe sIRC4.exe

Detected by UnHackMe:

SIRC4.EXE
Default location: %SYSDIR%\SIRC4.EXE

Dropper information:
MD5: 1a42d7e386c341fafe05c4ddd0c0b9a1
File size: 444855 bytes

Leave a Reply