
Win32.Delf.se’s core component is a Windows PE EXE file written in Delphi, wrapped with UPX. Once launched, it goes on to disable popular anti-virus applications and paves the way for more Adware, Spyware, Trojan and Backdoor. Often, a Trojan Dropper slips into a computer from malicious Web sites without showing any alert or notification. If via e-mails, it comes with hoaxes, jokes, games, graphics and so forth, designed to make the user believe that it is harmless, while discreetly performing deadly operations in the background.
The file name zilla.exe (size 340KB) gets downloaded from http://browsezilla.org everytime a string is passed by surfer for search in its searchbar.
A Trojan-Dropper called Win32.Delf.se source from MicroWorld Technologies






Comment Preview