Home Malware Programs Backdoors W32/Deloder

W32/Deloder

Posted: September 5, 2007

Threat Metric

Threat Level: 8/10
Infected PCs: 44
First Seen: July 24, 2009
Last Seen: January 20, 2022
OS(es) Affected: Windows

W32/Deloder is a worm that spreads via network shares, which are protected by weak passwords. As such, infected networks will see an increase in traffic on TCP port 445. W32/Deloder requires Windows2K/XP in order to spread. Computers compromised by W32/Deloder have an additional backdoor which is typically used for network administration. This tool allows the attacker to remotely control the compromised system or spy on every single keystroke. W32/Deloder installs the administration tool with the same password for all systems so that amateur attackers can utilize these compromised systems.

W32/Deloder

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



malware.exe File name: malware.exe
Size: 745.98 KB (745984 bytes)
MD5: b2239807464100f447c2235fd5ac7a78
Detection count: 33
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
explorer.exe File name: explorer.exe
Size: 212.99 KB (212992 bytes)
MD5: 8adaafbba6b0508f296de4c56278c379
Detection count: 27
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
rundll32.exe File name: rundll32.exe
Size: 29.33 KB (29336 bytes)
MD5: 29e5c4c836d0885c60c187557109efc2
Detection count: 26
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: December 11, 2009
inst.exe File name: inst.exe
Size: 684.56 KB (684562 bytes)
MD5: 3ce9f0419e20e0803c807b32823cfd66
Detection count: 5
File type: Executable File
Mime Type: unknown/exe
Group: Malware file
Last Updated: January 20, 2022
Loading...