Trojan

Trojan:Win32/DelfInject.PNP!MTB removal

Malware Removal

The Trojan:Win32/DelfInject.PNP!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/DelfInject.PNP!MTB virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan:Win32/DelfInject.PNP!MTB?


File Info:

crc32: 805B27C1
md5: e1831d928f7e2cb17ee9e602bf664db4
name: E1831D928F7E2CB17EE9E602BF664DB4.mlw
sha1: 7fd221f0c404e1cbb9011a2d167e2ef400ec2dad
sha256: 1d4caa0b975ecf0bcb2cc854e5704a7a47d97aac648e0b3634143354c98aacb9
sha512: d67135a521e2e0d2a754d4dc75fb6e02d1d9a13974a03b4b60ae34ee21010a36a3297a08f84e9f27e1910ea941cca4372ff5d26bc360f1893364c90e92f459ff
ssdeep: 12288:XJmblZvxSrp+Dtf98n4OGjSWY8vq1UUGkFcXXa6nIF:XJY4rp+f8zGOHx16BXXa6
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan:Win32/DelfInject.PNP!MTB also known as:

K7AntiVirusTrojan ( 0057ca071 )
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Stealer.23680
CynetMalicious (score: 100)
CAT-QuickHealTrojan.BypassUAC
ALYacTrojan.Agent.FHRT
CylanceUnsafe
ZillyaDownloader.Delf.Win32.61211
SangforExploit.Win32.BypassUAC.gen
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojanDownloader:Win32/DelfInject.35c19f61
K7GWTrojan ( 0057ca071 )
CyrenW32/Trojan.YXMB-1753
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/TrojanDownloader.Delf.DFG
APEXMalicious
AvastWin32:RATX-gen [Trj]
ClamAVWin.Malware.Fhrt-9862953-0
KasperskyHEUR:Exploit.Win32.BypassUAC.gen
BitDefenderTrojan.Agent.FHRT
ViRobotTrojan.Win32.Z.Delf.858616.A
MicroWorld-eScanTrojan.Agent.FHRT
Ad-AwareTrojan.Agent.FHRT
SophosMal/Generic-S
ComodoMalware@#390dfwuj2hsfi
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R06CC0PEI21
McAfee-GW-EditionFareit-FZO!E1831D928F7E
FireEyeTrojan.Agent.FHRT
EmsisoftTrojan.Agent.FHRT (B)
SentinelOneStatic AI – Suspicious PE
AviraTR/Dldr.Delf.vkkhu
eGambitPE.Heur.InvalidSig
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/DelfInject.PNP!MTB
AegisLabHacktool.Win32.BypassUAC.3!c
ZoneAlarmHEUR:Exploit.Win32.BypassUAC.gen
GDataTrojan.Agent.FHRT
AhnLab-V3Malware/Win.FZO.R421460
McAfeeFareit-FZO!E1831D928F7E
MAXmalware (ai score=84)
VBA32TScope.Trojan.Delf
MalwarebytesMalware.AI.4280319883
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R06CC0PEI21
RisingTrojan.Kryptik!1.D2D5 (CLOUD)
YandexTrojan.Igent.bVTBYO.41
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.74148531.susgen
FortinetW32/Delf.DCB!tr
AVGWin32:RATX-gen [Trj]
Paloaltogeneric.ml

How to remove Trojan:Win32/DelfInject.PNP!MTB?

Trojan:Win32/DelfInject.PNP!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment