Worm Vobfus – WINEPDATEr.exe – 78be57338cd3609be03a8907237b6b0e

I will tell you in this post how to fix the issue manually and how to clean it automatically using a special powerful removal tool. You can download the removal program for free here:

Manual removal instructions:

Worm Vobfus
Also known as: Backdoor Bifrose, Trojan Agent
SHA256: a46058989a0b424fcd9cbfe6cfe07366fe543ebfe2b865a9813f532d3d67c67d
SHA1: 32131af42489e530d87d204cb170fe63ef3a48ef
MD5: 78be57338cd3609be03a8907237b6b0e
File size: 272828 bytes

Created files:

%SysDir%\WINEPDAT\WINEPDATEr.exe – Worm Vobfus

Worm Vobfus created autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{YWF5FRIT-ABW6-JN88-4310-5FP7P1207K75}\StubPath: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C00570049004E00450050004400410054005C00570049004E0045005000440041005400450072002E006500780065000000
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\HKLM: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C00570049004E00450050004400410054005C00570049004E0045005000440041005400450072002E006500780065000000
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\HKCU: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C00570049004E00450050004400410054005C00570049004E0045005000440041005400450072002E006500780065000000

Leave a Reply