SVCHOSTDSAD.EXE – Trojan Delf

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SVCHOSTDSAD.EXE – Trojan Delf removal

FileMD5Virus Alias
SVCHOSTDSAD.EXE a974a5fee359d1ba1bfa39244db20ed0 Trojan Delf
SVCHOSTDSAD.EXE a974a5fee359d1ba1bfa39244db20ed0 Suspicious File
SVCHOSTDSAD.EXE a974a5fee359d1ba1bfa39244db20ed0 Trojan Generic
SVCHOSTDSAD.EXE a974a5fee359d1ba1bfa39244db20ed0 Trojan Eldorado
SVCHOSTDSAD.EXE a974a5fee359d1ba1bfa39244db20ed0 Trojan Downloader
SVCHOSTDSAD.EXE a974a5fee359d1ba1bfa39244db20ed0 Trojan Agent

SVCHOSTDSAD.EXE size: 194560 bytes
SVCHOSTDSAD.EXE hash: A974A5FEE359D1BA1BFA39244DB20ED0

Created files:

C:\Documents and Settings\LocalService\Local Settings\Application Data\sLT.exf
%SysDir%\drivers\svchostdsad.exe

Autostart registry keys:

HKLM\System\CurrentControlSet\Services\Host Generic Process\Type: 10010000
HKLM\System\CurrentControlSet\Services\Host Generic Process\Start: 02000000
HKLM\System\CurrentControlSet\Services\Host Generic Process\ErrorControl: 01000000
HKLM\System\CurrentControlSet\Services\Host Generic Process\DisplayName: Host Generic Process for Win32 Services
HKLM\System\CurrentControlSet\Services\Host Generic Process\ImagePath: %WinDir%\System32\drivers\svchostdsad.exe

Detected by UnHackMe:

SVCHOSTDSAD.EXE
Default location: %SYSDIR%\DRIVERS\SVCHOSTDSAD.EXE

Dropper information:
MD5: a974a5fee359d1ba1bfa39244db20ed0
File size: 194560 bytes

Leave a Reply