Malware

Generic.Delph.PWS.AF1C4807 removal instruction

Malware Removal

The Generic.Delph.PWS.AF1C4807 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Delph.PWS.AF1C4807 virus can do?

  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • CAPE detected the Azorult malware family

How to determine Generic.Delph.PWS.AF1C4807?


File Info:

name: 2F86D037F121E5B31C49.mlw
path: /opt/CAPEv2/storage/binaries/0dcbdc3d602f1d1acec1445ab4e1eeee412a47b8271e3e8f253383e01370bfe2
crc32: E3D73051
md5: 2f86d037f121e5b31c49e6f9d4406aa0
sha1: b5e4650927f665ae46f3feeeccdee84768adce5c
sha256: 0dcbdc3d602f1d1acec1445ab4e1eeee412a47b8271e3e8f253383e01370bfe2
sha512: bf13a9af0d800f1bc82442ead14cd5f6091a4fa890dc6d245b4e17e0336b7cd5e87f25c9da529ba6a2d1a2bee0be63481716a920c4bc77a7ef20578f4969434a
ssdeep: 3072:2uOSXpMx7ZAlHsbfUkolNGti7lfqeSxM3SpyEYlE/7xg/:yzx7ZApszolIo7lf/ip1/7
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18CD3197AF6C19672E02808BDCD4691B6902D76302D3918B6B6DA4F8CD5F95C26F2C3C7
sha3_384: f53e27dcf65f15bd49be6c7cbd6d873cac63e26ff1d51c6235abc3d65cd0177deb84f520262d41f9e4668eaf56440c75
ep_bytes: 85e8feffff8d9580fdffff33c0e84a91
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Generic.Delph.PWS.AF1C4807 also known as:

BkavW32.AIDetectNet.01
ElasticWindows.Trojan.Azorult
MicroWorld-eScanGeneric.Delph.PWS.AF1C4807
ClamAVWin.Ransomware.Delf-6651871-0
FireEyeGeneric.mg.2f86d037f121e5b3
McAfeeGenericRXIV-UJ!2F86D037F121
MalwarebytesGeneric.Spyware.Stealer.DDS
SangforRansom.Win32.Foreign_18.se
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaAI:Packer.0E5CA6F61E
CyrenW32/Delf_Troj.D.gen!Eldorado
SymantecTrojan.Coinstealer
ESET-NOD32a variant of Win32/PSW.Delf_AGen.C
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-PSW.Win32.Generic
BitDefenderGeneric.Delph.PWS.AF1C4807
AvastFileRepMalware [Misc]
TACHYONTrojan-PWS/W32.Agent.131072.Y
EmsisoftGeneric.Delph.PWS.AF1C4807 (B)
F-SecureTrojan.TR/Patched.Ren.Gen
DrWebTrojan.PWS.Stealer.25089
VIPREGeneric.Delph.PWS.AF1C4807
McAfee-GW-EditionBehavesLike.Win32.Generic.cm
Trapminesuspicious.low.ml.score
SophosML/PE-A
SentinelOneStatic AI – Suspicious PE
GDataWin32.Trojan-Stealer.KBot.B
AviraTR/Patched.Ren.Gen
Antiy-AVLTrojan[Spy]/Win32.AZORult.gen
ArcabitGeneric.Delph.PWS.AF1C4807
ZoneAlarmHEUR:Trojan-PSW.Win32.Generic
MicrosoftTrojan:Win32/Azorult!ibt
GoogleDetected
AhnLab-V3Malware/Win32.RL_Generic.R295109
ALYacGeneric.Delph.PWS.AF1C4807
MAXmalware (ai score=82)
Cylanceunsafe
RisingStealer.AZORult!1.B7AE (CLASSIC)
IkarusTrojan-Spy.Azorult
MaxSecureTrojan.Malware.23911.susgen
AVGFileRepMalware [Misc]
DeepInstinctMALICIOUS

How to remove Generic.Delph.PWS.AF1C4807?

Generic.Delph.PWS.AF1C4807 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment