Trojan

Trojan:Win32/DelfInject.PNV!MTB information

Malware Removal

The Trojan:Win32/DelfInject.PNV!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/DelfInject.PNV!MTB virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
edgedl.me.gvt1.com

How to determine Trojan:Win32/DelfInject.PNV!MTB?


File Info:

crc32: F358F45A
md5: 2ab1c4c74232932722a3405153b3ea15
name: 2AB1C4C74232932722A3405153B3EA15.mlw
sha1: d0f9e2c154c99892d61a0d4327a1a3f9f130738b
sha256: 92258f992fbf15509591d96b11cb50eda41cf0c19f35fdd089c311ca5eace947
sha512: a784f42d40c095660ec88f792b7d89a0efe03d0dfd336edf265fad76992a32f1b70313a3a3a2189e947d1936a780063e8b11c61448a00554e0eec6587fd834b9
ssdeep: 12288:weTojw1Mg5QG2QjskfWpuMifGxw2NX/zbtL0inMa06/z9JM/qJAJp/:wcr1nQG5daRPnMmxe/wA
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan:Win32/DelfInject.PNV!MTB also known as:

Elasticmalicious (high confidence)
DrWebTrojan.DownLoader39.41312
CynetMalicious (score: 100)
CAT-QuickHealTrojanspy.Noon
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (W)
AlibabaTrojanDownloader:Win32/Fareit.7866c1cd
K7GWTrojan-Downloader ( 0057ab6f1 )
CyrenW32/Delf_Troj.AT.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/TrojanDownloader.Delf.DFG
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan-Spy.Win32.Noon.gen
BitDefenderTrojan.GenericKD.46442693
MicroWorld-eScanTrojan.GenericKD.46442693
Ad-AwareTrojan.GenericKD.46442693
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZelphiF.34722.3GW@ayvsHjhi
McAfee-GW-EditionBehavesLike.Win32.AdwareIMonster.cc
FireEyeGeneric.mg.2ab1c4c742329327
EmsisoftTrojan.GenericKD.46442693 (B)
SentinelOneStatic AI – Suspicious PE
AviraTR/Spy.Noon.dtesz
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/DelfInject.PNV!MTB
GDataTrojan.GenericKD.46442693
AhnLab-V3Malware/Win.FZO.C4518307
McAfeeFareit-FZO!2AB1C4C74232
MAXmalware (ai score=89)
VBA32BScope.Trojan.Fuerboos
MalwarebytesMalware.AI.2325003262
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002H0CF721
RisingTrojan.Kryptik!1.D2D5 (CLASSIC)
IkarusTrojan.Win32.Rescoms
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.FFLW!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan:Win32/DelfInject.PNV!MTB?

Trojan:Win32/DelfInject.PNV!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment