Trojan

UDS:Trojan-Dropper.Win32.Delfea malicious file

Malware Removal

The UDS:Trojan-Dropper.Win32.Delfea is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What UDS:Trojan-Dropper.Win32.Delfea virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is likely packed with VMProtect
  • Authenticode signature is invalid

How to determine UDS:Trojan-Dropper.Win32.Delfea?


File Info:

name: 93CDCB0182976FAF82FA.mlw
path: /opt/CAPEv2/storage/binaries/7e9ae0cf296472170e2c0aac2e825d1b6cec089d77dd8d0dbfb112aa95e85458
crc32: 83C3D54F
md5: 93cdcb0182976faf82fa00f340358359
sha1: b799c7ab3a0a96b8ce5e95b005911e4abea9f981
sha256: 7e9ae0cf296472170e2c0aac2e825d1b6cec089d77dd8d0dbfb112aa95e85458
sha512: 9a6ad3089b60a105a20cb6f4839a7c27ea1b8071f779ec246ccc0d4123f877f9bb30e805067d24a778ae1e1bbd065c7cc83b1c9174f4923a6eb1655c4e713dcf
ssdeep: 98304:KWHo8DrPDnl+AIT/5D/KYsTF2/ukkURHBMvyHGB:KWHo8DzDl+PYYyFK1v8ymB
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1DD36233342A611C6E1E8CC368933FDD871F6037A8A42EC7995E6ADC617639E1D712B43
sha3_384: 7ee3cfdcda6e0fbba139898f22fc2bf4825f0df8347c9babcddc4b0bbbf53cb6f3ed2b11f7511a0485ec1e5d584bd6e0
ep_bytes: 68d8354601e890331900e9bec41700ff
timestamp: 1992-06-19 22:22:17

Version Info:

Comments:
CompanyName:
FileDescription: TimerResolution
FileVersion: 1, 2, 0, 1
InternalName: TimerResolution
LegalCopyright: Copyright (C) 2007
LegalTrademarks:
OriginalFilename: TimerResolution.exe
PrivateBuild:
ProductName: TimerResolution Application
ProductVersion: 1, 2, 0, 1
SpecialBuild:
Translation: 0x0409 0x04b0

UDS:Trojan-Dropper.Win32.Delfea also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
FireEyeGeneric.mg.93cdcb0182976faf
McAfeeArtemis!93CDCB018297
CylanceUnsafe
SangforTrojan.Win32.Agent.V99t
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaPacked:Win32/VMProtect.8caf935a
K7GWTrojan ( 7000001c1 )
K7AntiVirusTrojan ( 7000001c1 )
BitDefenderThetaGen:NN.ZexaF.34646.@N0@aOUnshh
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.VMProtect.ZQ
APEXMalicious
Paloaltogeneric.ml
KasperskyUDS:Trojan-Dropper.Win32.Delfea
AvastFileRepMalware [Rat]
McAfee-GW-EditionBehavesLike.Win32.Injector.rc
Trapminemalicious.high.ml.score
SophosMal/VMProtBad-A
IkarusTrojan.Win32.VMProtect
GDataWin32.Trojan-Stealer.CoinStealer.HONTI7
GoogleDetected
AviraHEUR/AGEN.1203959
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.R424135
VBA32BScope.Trojan.Vigorf
MalwarebytesMalware.Heuristic.1003
RisingTrojan.Nanobot!8.80F2 (TFE:5:ODaZsRE2pBC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/PossibleThreat
AVGFileRepMalware [Rat]
Cybereasonmalicious.b3a0a9

How to remove UDS:Trojan-Dropper.Win32.Delfea?

UDS:Trojan-Dropper.Win32.Delfea removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment