Trojan Delf – 139Email bomber by Wolwerine [wantedsoft.hi2.ro].exe – 523d837899758f448f13a364fb99ccee

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Delf
Also known as: Trojan Downloader.Generic, Trojan Agent
SHA256: c87547a03546f2e40902fbf738640e017319a805c5e5a7cc8eb5831c683034b1
SHA1: 7bd3560b72b039c25db8b423618cd94f20039842
MD5: 523d837899758f448f13a364fb99ccee
File size: 1111040 bytes

Created files:

%WinDir%\139Email bomber by Wolwerine [wantedsoft.hi2.ro].exe – Trojan Delf
%WinDir%\139Email bomber by Wolwerine [wantedsoft.hi2.ro].exe.exe – Trojan Delf
%WinDir%\InstallDir\Server.exe – Trojan Delf

Trojan Delf created autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{22K55HG8-27R5-7A52-6RBN-ID4J27M6NVTH}\StubPath: 43003A005C00570049004E0044004F00570053005C0049006E007300740061006C006C004400690072005C005300650072007600650072002E006500780065000000
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\HKLM: 43003A005C00570049004E0044004F00570053005C0049006E007300740061006C006C004400690072005C005300650072007600650072002E006500780065000000
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\HKCU: 43003A005C00570049004E0044004F00570053005C0049006E007300740061006C006C004400690072005C005300650072007600650072002E006500780065000000

Leave a Reply