SysConf.exe – Trojan Delf

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

SysConf.exe – Trojan Delf removal

FileVirus Alias
SysConf.exe Trojan Delf
SysConf.exe Backdoor Poison
SysConf.exe Trojan Downloader.Generic
SysConf.exe Backdoor Tordev
SysConf.exe Trojan Agent

Created files:

%SysDir%\System32\SysConf.exe – Trojan Delf

Autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\UserInit: %WinDir%\System32\userinit.exe,%WinDir%\System32\System32\SysConf.exe
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\SystemConf: %WinDir%\System32\System32\SysConf.exe

Detected by UnHackMe:

SysConf.exe
Default location: %SysDir%\System32\SysConf.exe

Dropper information:
SHA256: c3b9cc24bfb44d8a9dc3986d5af3d7db8cf110d3a41b0559d41ae58b23f14a96
SHA1: 4d8597d003cb8c4042dbe778fe8201fe83c207a1
MD5: 9b6c50dbdb91af17a184dfac32959113
File size: 706560 bytes

Leave a Reply