leasrsa.dll – Trojan Delf

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

leasrsa.dll – Trojan Delf removal

FileVirus Alias
leasrsa.dll Trojan Delf

Created files:

%SysDir%\leasrsa.dll – Trojan Delf
%SysDir%\mistm.exe – Trojan Delf
%SysDir%\Mswinsck.ocx – Trojan Delf
%SysDir%\nt010.info – Trojan Delf
%SysDir%\nt011.info – Trojan Delf

Autostart registry keys:

HKLM\Software\Classes\CLSID\{248DD896-BB45-11CF-9ABC-0080C7E7B78D}\InprocServer32 : %WinDir%\System32\Mswinsck.ocx
HKLM\Software\Classes\CLSID\{248DD897-BB45-11CF-9ABC-0080C7E7B78D}\InprocServer32 : %WinDir%\System32\Mswinsck.ocx
HKLM\Software\Microsoft\Active Setup\Installed Components\{Y479C6D0-OTRW-U5GH-S1EE-E0AC10B4E666}\StubPath: %WinDir%\System32\mistm

Detected by UnHackMe:

leasrsa.dll
Default location: %SysDir%\leasrsa.dll

Dropper information:
SHA256: cd56d14d8b35affe91c7278ed5857594ccb83a035d07e59698e7a79c98e21247
SHA1: 7fe2e1008d941b77e0b295290de02eba423068bc
MD5: 0ca8415b82ec1bd029ed9d259a347189
File size: 450560 bytes

Leave a Reply