Hi,

If this file is located in C:\Windows\System and it have “HKLM | HKCU/ … / Run” key as loading point than it is worm\trojan.
I will be working on your Malware issues if you will. During this case I will use multiple tools for the best possible analysis and malware removal.

Please download Farbar Recovery Scan Tool and Zoek.exe and save both tools to your Desktop.

[color=green] Note for Farbar Recovery Scan Tool (aka FRST):
You need to run the version compatibale with your system. If you are not sure which version applies to your system download both of them and try to run them.
Only one of them will run on your system, that will be the right version.

[color=green] Note for Zoek.exe:
Do not launch Zoek.exe yet! We shall use it later.

http://www.mcshield.net/personal/magna86/Images/FRST.gif
FRST Scan:

[*]Double-click on FRST/FRST64 to run it. When the tool opens click Yes to disclaimer.
[*]Under Optional Scan ensure “List BCD” and “Driver MD5” are ticked.
[*]Press Scan button.
[*]It will make a log (FRST.txt) in the same directory the tool is run. Please attach it to your reply.
[*]The first time the tool is run, it makes also another log (Addition.txt). Please attach it to your reply.