Threat Database Trojans Trojan-Downloader.Win32.Delf.cgx

Trojan-Downloader.Win32.Delf.cgx

Trojan-Downloader.Win32.Delf.cgx is a Trojan program that is deceptively installed to download malware and unwanted software onto an unsuspecting victim's computer. Trojan-Downloader.Win32.Delf.cgx may download adware, spyware or other malware from multiple servers on the Internet. Trojan-Downloader.Win32.Delf.cgx poses a high risk to a PC's security. Trojan-Downloader.Win32.Delf.cgx's symptoms include illicit network connections, self-mutation, disabling of security software and the installation of harmful malware. Trojan-Downloader.Win32.Delf.cgx may also transmit personal information without your consent and severely compromise the performance of your computer. Remove this malicious malware immediately to prevent damage to the infected system.

File System Details

Trojan-Downloader.Win32.Delf.cgx may create the following file(s):
# File Name Detections
1. tssd.exe
2. %UserProfile%\Local Settings\Application Data\\

Registry Details

Trojan-Downloader.Win32.Delf.cgx may create the following registry entry or registry entries:
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download "RunInvalidSignatures" = "1"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Associations "LowRiskFileTypes" = ".exe"
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ""
HKEY_LOCAL_MACHINE\SOFTWARE\avsuite
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "ProxyServer" = "http=127.0.0.1:5555"
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run ""
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "ProxyEnable" = "1"
HKEY_CURRENT_USER\Software\avsuite
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings "ProxyOverride" = "
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Attachments "SaveZoneInformation" = "1"
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Download "CheckExeSignatures" = "no"

Trending

Most Viewed

Loading...