Trojan Delf – scvchost.exe – 8c25c5030190af1ce559b8fdb23b6f5f

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Delf
Also known as: Trojan Buzus, Trojan Downloader.Generic
SHA256: e0a8eb69fb8f4965af79c5d506a8ce78713373dd707b9758b12beb353857dc22
SHA1: c7a90de766a294a250e9ccfcfb1caa7f3fb17b25
MD5: 8c25c5030190af1ce559b8fdb23b6f5f
File size: 1717248 bytes

Created files:

C:\updatesecurity\scvchost.exe – Trojan Delf
%Temp%\HAPPYFOSIL.EXE – Trojan Delf
%Temp%\tmpcmd.bat – Trojan Delf
%Personal%\MSDCSC\msdcsc.exe – Trojan Delf

Trojan Delf created autostart registry keys:

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\UserInit: %WinDir%\System32\userinit.exe,C:\updatesecurity\scvchost.exe,%Personal%\MSDCSC\msdcsc.exe
HKLM\System\CurrentControlSet\Services\wscsvc\Start: 04000000
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\MicroUpdate: %Personal%\MSDCSC\msdcsc.exe

Leave a Reply