Trojan Delf – AngelSupporter.exe – 2eda926f4d4a4b010bb4f784e17e6ab9

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Delf
Also known as: Worm AMN
SHA256: 410665f92f9b4f0442401e172d87a13521bd58fdb598471a6a5ff51f878d8863
SHA1: 69f4afb1b2808b74eda9bf5cec34b8247cdc6899
MD5: 2eda926f4d4a4b010bb4f784e17e6ab9
File size: 326144 bytes

Created files:

%Program Files%\Angel Supporter\AngelSupporter.exe – Trojan Delf
%Program Files%\Angel Supporter\AngelSupporterh.dll – Trojan Delf
%Temp%\40174.bat – Trojan Delf
%Temp%\malware3.EXE – Trojan Delf

Trojan Delf created autostart registry keys:

HKLM\Software\Classes\CLSID\{4F14A6D8-3DFD-4DF4-B91E-70449E433A3E}\InprocServer32 : C:\PROGRA~1\ANGELS~1\ANGELS~1.DLL
HKLM\Software\Classes\CLSID\{4F14A6D8-3DFD-4DF4-B91E-70449E433A3E}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Classes\CLSID\{5136BF13-FAE3-4FF8-B2B7-195DE9DFF662}\InprocServer32 : C:\PROGRA~1\ANGELS~1\ANGELS~1.DLL
HKLM\Software\Classes\CLSID\{5136BF13-FAE3-4FF8-B2B7-195DE9DFF662}\InprocServer32\ThreadingModel: Apartment
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\Angel Supporter: “%Program Files%\Angel Supporter\AngelSupporter.exe”

Leave a Reply