Malware

Generic.Dlf.Startpage.0F156661 removal guide

Malware Removal

The Generic.Dlf.Startpage.0F156661 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.Dlf.Startpage.0F156661 virus can do?

  • A file was accessed within the Public folder.
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Generic.Dlf.Startpage.0F156661?


File Info:

name: BC22387D23A5914421A3.mlw
path: /opt/CAPEv2/storage/binaries/4a3d98dde843f4dc8e9ae30c9a4701b87347caee379a0853bec056547be93a92
crc32: 3F14F130
md5: bc22387d23a5914421a3dbde23c82c56
sha1: 8525365d32811abffefcca259b8d81e71333a7af
sha256: 4a3d98dde843f4dc8e9ae30c9a4701b87347caee379a0853bec056547be93a92
sha512: 5d10dd59a68a48ed18a83e7393f3f0edd2cc870295ef5a42eba036f2b07b56b1da2ad48ea048a7d8db5785dc8971c5c87fc442ebbf393aa81fb3402bd83f5c31
ssdeep: 12288:l6PiijUbYmAjQnbamML4l/GoZMn/+aQNo02:IKtAybaH4ptMn/+aKr2
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T196C47D62F5E09437D2765F39CD1F96A4982ABE502D34A84A3BF43D4C8F3978139292D3
sha3_384: c4e04dae1103ba9010ccff584e2dc7a30e0f48f60d311361d241c99a45c7959dfa3dc1a5d5af23947b6b3ccb1fb50614
ep_bytes: 558bec83c4f0535657b854064700e839
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Generic.Dlf.Startpage.0F156661 also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanGeneric.Dlf.Startpage.0F156661
FireEyeGeneric.mg.bc22387d23a59144
CAT-QuickHealTrojan.Delf
McAfeeGeneric.boq
MalwarebytesGeneric.Malware.AI.DDS
VIPREGeneric.Dlf.Startpage.0F156661
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 7000000f1 )
K7GWTrojan ( 7000000f1 )
CrowdStrikewin/malicious_confidence_100% (W)
BaiduWin32.Trojan.StartPage.af
VirITTrojan.Win32.Startpage.IEI
CyrenW32/StartPage.M.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/StartPage.NRP
APEXMalicious
ClamAVWin.Downloader.91796-1
KasperskyTrojan.Win32.StartPage.zld
BitDefenderGeneric.Dlf.Startpage.0F156661
SUPERAntiSpywareTrojan.Agent/Gen-StartPage
AvastWin32:StartPage-AHS [Trj]
TencentMalware.Win32.Gencirc.10b666b7
SophosMal/Generic-S
F-SecureTrojan:W32/StartPage.ANS
DrWebTrojan.Click1.61237
ZillyaTrojan.StartPage.Win32.5750
TrendMicroTROJ_STARTP.SMHB
McAfee-GW-EditionBehavesLike.Win32.ObfuscatedPoly.hh
EmsisoftGeneric.Dlf.Startpage.0F156661 (B)
SentinelOneStatic AI – Suspicious PE
GDataWin32.Trojan.StartPage.D
JiangminTrojan/StartPage.eam
GoogleDetected
AviraTR/ATRAPS.Gen
Antiy-AVLTrojan/Win32.StartPage
XcitiumTrojWare.Win32.Startpage.~NRP@1rmysw
ArcabitGeneric.Dlf.Startpage.0F156661
ViRobotTrojan.Win32.A.StartPage.557352
ZoneAlarmTrojan.Win32.StartPage.zld
MicrosoftTrojan:Win32/Delf.II
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.StartPage.R1191
BitDefenderThetaAI:Packer.C1D194A21E
ALYacGeneric.Dlf.Startpage.0F156661
MAXmalware (ai score=81)
VBA32BScope.Backdoor.BlackHole
Cylanceunsafe
PandaTrj/StartPage.DID
TrendMicro-HouseCallTROJ_STARTP.SMHB
RisingTrojan.StartPage!1.C352 (CLASSIC)
YandexTrojan.GenAsa!EEMkbG2JvF0
IkarusTrojan.Win32.StartPage
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/StartPage.AA!tr
AVGWin32:StartPage-AHS [Trj]
DeepInstinctMALICIOUS

How to remove Generic.Dlf.Startpage.0F156661?

Generic.Dlf.Startpage.0F156661 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment