ANTIVAR.EXE – Trojan Delf

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

ANTIVAR.EXE – Trojan Delf removal

FileMD5Virus Alias
ANTIVAR.EXE b7b258014432b4146e4bacd695ec21c4 Trojan Delf
ANTIVAR.EXE b7b258014432b4146e4bacd695ec21c4 Trojan Eldorado
ANTIVAR.EXE b7b258014432b4146e4bacd695ec21c4 Trojan Downloader
ANTIVAR.EXE b7b258014432b4146e4bacd695ec21c4 Trojan Bancos
ANTIVAR.EXE b7b258014432b4146e4bacd695ec21c4 Trojan Agent
ANTIVAR.EXE b7b258014432b4146e4bacd695ec21c4 Trojan Jorik

ANTIVAR.EXE size: 177152 bytes

Created files:

C:\Documents and Settings\LocalService\Local Settings\Application Data\sLT.exf
%SysDir%\antivar.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\ServerNabs4\Type: 10010000
HKLM\System\CurrentControlSet\Services\ServerNabs4\Start: 02000000
HKLM\System\CurrentControlSet\Services\ServerNabs4\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\ServerNabs4\DisplayName: ServerNabs4
HKLM\System\CurrentControlSet\Services\ServerNabs4\ImagePath: %WinDir%\System32\antivar.exe

Detected by UnHackMe:

ANTIVAR.EXE
Default location: %SYSDIR%\ANTIVAR.EXE

Leave a Reply