Troj/Delf-EL is a keylogging Trojan for the Windows platform.
When run, the Trojan copies itself to <windows>\sysload.exe and creates the following registry entry in order to run automatically when Windows starts up:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\
@=C:\WINDOWS\sysload.exe
The following registry entry is also created:
HKLM\SOFTWARE\internettime\id = <random string>
The Trojan logs all keystrokes to the file <windows>\temp\itimkl.txt
Troj/Delf-EL attempts to connect to an internet server and download code.