SVCHOST.COM – Trojan Delf

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SVCHOST.COM – Trojan Delf removal

FileMD5Virus Alias
SVCHOST.COM 42983cc1752e2119fa24b7f9e1a51534 Trojan Delf
SVCHOST.COM 42983cc1752e2119fa24b7f9e1a51534 Trojan SuspiciousFile
SVCHOST.COM 42983cc1752e2119fa24b7f9e1a51534 Trojan Agent

SVCHOST.COM size: 41472 bytes
SVCHOST.COM hash: 42983CC1752E2119FA24B7F9E1A51534

Created files:

%WinDir%\svchost.com
%TEMP%\3582-490\F875295037A9B07007F63B9E498CE0B7.EXE
%Local AppData%\Google\Chrome\Application\17.0.963.79\chrome_frame_helper.exe
%Local AppData%\Google\Chrome\Application\17.0.963.79\chrome_launcher.exe
%Local AppData%\Google\Chrome\Application\17.0.963.79\Installer\setup.exe
%Local AppData%\Google\Chrome\Application\17.0.963.79\nacl64.exe
%Local AppData%\Google\Chrome\Application\30.0.1599.101\chrome_frame_helper.exe
%Local AppData%\Google\Chrome\Application\30.0.1599.101\chrome_launcher.exe
%Local AppData%\Google\Chrome\Application\30.0.1599.101\delegate_execute.exe
%Local AppData%\Google\Chrome\Application\30.0.1599.101\Installer\setup.exe
%Local AppData%\Google\Chrome\Application\30.0.1599.101\nacl64.exe
%Local AppData%\Google\Chrome\Application\chrome.exe
%Local AppData%\Google\Update\1.3.21.165\GoogleCrashHandler.exe
%Local AppData%\Google\Update\1.3.21.165\GoogleCrashHandler64.exe
%Local AppData%\Google\Update\1.3.21.165\GoogleUpdate.exe
%Local AppData%\Google\Update\1.3.21.165\GoogleUpdateBroker.exe
%Local AppData%\Google\Update\1.3.21.165\GoogleUpdateOnDemand.exe
%Local AppData%\Google\Update\1.3.21.165\GoogleUpdateSetup.exe
%Local AppData%\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.21.165\GoogleUpdateSetup.exe
%Local AppData%\Google\Update\GoogleUpdate.exe

Detected by UnHackMe:

SVCHOST.COM
Default location: %WinDir%\SVCHOST.COM

Dropper information:
MD5: f875295037a9b07007f63b9e498ce0b7
File size: 1085952 bytes

Leave a Reply