Manual removal instructions:
Worm Vobfus
Also known as: Backdoor Bifrose, Trojan Agent
SHA256: a46058989a0b424fcd9cbfe6cfe07366fe543ebfe2b865a9813f532d3d67c67d
SHA1: 32131af42489e530d87d204cb170fe63ef3a48ef
MD5: 78be57338cd3609be03a8907237b6b0e
File size: 272828 bytes
Created files:
%SysDir%\WINEPDAT\WINEPDATEr.exe – Worm Vobfus/p>
Worm Vobfus created autostart registry keys:
HKLM\Software\Microsoft\Active Setup\Installed Components\{YWF5FRIT-ABW6-JN88-4310-5FP7P1207K75}\StubPath: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C00570049004E00450050004400410054005C00570049004E0045005000440041005400450072002E006500780065000000
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\HKLM: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C00570049004E00450050004400410054005C00570049004E0045005000440041005400450072002E006500780065000000
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\HKCU: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C00570049004E00450050004400410054005C00570049004E0045005000440041005400450072002E006500780065000000
Recommended:
UnHackMe anti-rootkit and anti-malware
Premium software: RegRun Security Suite (Good choice for removal and protection)