Threat Encyclopedia

Selected viruses, spyware, and other threats: sorted alphabetically

Win32/Delf.PNC

Aliases:Trojan-Downloader.Win32.Murlo.fhh (Kaspersky), TrojanDownloader:Win32/Troxen!rts (Microsoft), Generic Downloader.x!dzm (McAfee) 
Type of infiltration:Trojan  
Size:498176 B 
Affected platforms:Microsoft Windows 
Signature database version:5357 (20100811) 

Short description

Win32/Delf.PNC is a trojan that is used for spam distribution.

Installation

When executed, the trojan copies itself into the following location:
  • c:windowstaskmgr.exe (498176 B)
In order to be executed on every system start, the trojan sets the following Registry entry:
  • [HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersion
    Run]
    "TaskManager" = "c:windowstaskmgr.exe"

Other information

Win32/Delf.PNC is a trojan that is used for spam distribution.

The trojan acquires data and commands from a remote computer or the Internet.

The trojan contains an URL address. The HTTP protocol is used.

The trojan may create the following folders:
  • c:windowsattach