Trojan

Trojan:Win32/DelfInject.RVA!MTB removal instruction

Malware Removal

The Trojan:Win32/DelfInject.RVA!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/DelfInject.RVA!MTB virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan:Win32/DelfInject.RVA!MTB?


File Info:

crc32: BB11A23C
md5: 7a72eb3c4fbb3fec8cd23935d988b20b
name: 7A72EB3C4FBB3FEC8CD23935D988B20B.mlw
sha1: 931f6fd258e994045c1c110fcba13fd5e9f2f11b
sha256: 653bd8ff2c1014348a5751d89addd6d5e9249359ead5ab73830d7b3f1812eb12
sha512: e2e152b4498ef0c28f0af0f47686f328820a1181aa39747befec092edd475d68a2cc941d4da1f263a90c4b539ace2d3e353d758641f59f3c066d551e0bb5af16
ssdeep: 24576:jNoIZGADWhQWycaZyTZwgwSQeyj5UD/dsltiH:jNoIZGrwzZyTZwgHQeyEO3
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan:Win32/DelfInject.RVA!MTB also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader38.41493
CynetMalicious (score: 99)
ALYacTrojan.GenericKD.36831761
CylanceUnsafe
AlibabaTrojan:Win32/Rescoms.5efaba94
K7GWTrojan ( 0053ba121 )
K7AntiVirusTrojan ( 0053ba121 )
CyrenW32/Injector.OKXP-4760
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Rescoms.B
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Trojan.Delf-9830573-0
KasperskyHEUR:Trojan.Win32.Agentb.gen
BitDefenderTrojan.GenericKD.36831761
MicroWorld-eScanTrojan.GenericKD.36831761
Ad-AwareTrojan.GenericKD.36831761
SophosMal/Generic-S
Comodo.UnclassifiedMalware@0
VIPRETrojan.Win32.Generic!BT
TrendMicroTrojanSpy.Win32.AUTOKMS.USMANE221
McAfee-GW-EditionBehavesLike.Win32.AdwareIMonster.tc
FireEyeTrojan.GenericKD.36831761
EmsisoftTrojan.GenericKD.36831761 (B)
SentinelOneStatic AI – Suspicious PE
AviraTR/Redcap.avvxa
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/DelfInject.RVA!MTB
AegisLabTrojan.Multi.Generic.4!c
GDataTrojan.GenericKD.36831761
AhnLab-V3Trojan/Win.FZO.C4448525
McAfeeFareit-FZO!7A72EB3C4FBB
MAXmalware (ai score=83)
MalwarebytesTrojan.Agent
PandaTrj/CI.A
TrendMicro-HouseCallTrojanSpy.Win32.AUTOKMS.USMANE221
RisingTrojan.Kryptik!1.D2D5 (CLASSIC)
IkarusTrojan.Win32.Rescoms
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Injector.EPFP!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Trojan:Win32/DelfInject.RVA!MTB?

Trojan:Win32/DelfInject.RVA!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment