Malware

Should I remove “VirTool:Win32/DelfInject!BO”?

Malware Removal

The VirTool:Win32/DelfInject!BO is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What VirTool:Win32/DelfInject!BO virus can do?

  • Reads data out of its own binary image
  • Authenticode signature is invalid
  • A scripting utility was executed
  • Deletes executed files from disk

How to determine VirTool:Win32/DelfInject!BO?


File Info:

name: DB87B9928FD7A996B00B.mlw
path: /opt/CAPEv2/storage/binaries/1a8bb01e8eaabb532111d5a12b85dfe9aba3e6c912d0b0c42d19b83d86ad0ee9
crc32: D568CCC1
md5: db87b9928fd7a996b00b76dd2fb37f53
sha1: 7ca0db8bac5187d4cc0685461555efde6d1b3d32
sha256: 1a8bb01e8eaabb532111d5a12b85dfe9aba3e6c912d0b0c42d19b83d86ad0ee9
sha512: 2f78df26927bf0b52624cf5c27364acb7262504376d384d0dcdb15f1884f0ee93f79983b4ee967233e55b38d5e95ec5b90a02ea7da3ca0775dfe5ad6533ff22d
ssdeep: 192:tjJT2h6ql0P2x/IHMFgBGL3XgnsWl1Sxr8hKqeWs0pakveffwP83mJ:tlqHoKg0L3QszuhXC0pakve3wc
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T163A27D873E98CF6EEA045FB21819471D99DFDD1447A1F211F7C6CCD29CB2AF90846588
sha3_384: d3ce1ea0ba3c1f1256295ee3171fb6aa0b36d96a21e92497d19a02b6db089d47f9ca706742d178fe7397ddcd01ab3494
ep_bytes: 68485940006804010000e8b400000005
timestamp: 2009-09-30 09:34:39

Version Info:

0: [No Data]

VirTool:Win32/DelfInject!BO also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Cosmu.m!c
tehtrisGeneric.Malware
CynetMalicious (score: 100)
SkyhighBehavesLike.Win32.Generic.mt
McAfeeArtemis!DB87B9928FD7
Cylanceunsafe
VIPRETrojan.Inject.GE
SangforSuspicious.Win32.Save.a
K7AntiVirusRiskware ( 00584baa1 )
AlibabaVirTool:Win32/DelfInject.bb39204f
K7GWRiskware ( 00584baa1 )
CrowdStrikewin/malicious_confidence_100% (W)
ArcabitTrojan.Inject.GE
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Generik.CCJXVRT
APEXMalicious
KasperskyUDS:Backdoor.Win32.Generic
BitDefenderTrojan.Inject.GE
NANO-AntivirusTrojan.Win32.Cosmu.cwvnh
MicroWorld-eScanTrojan.Inject.GE
AvastWin32:Trojan-gen
TencentWin32.Backdoor.Generic.Vmhl
EmsisoftTrojan.Inject.GE (B)
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.DownLoader46.44901
ZillyaBackdoor.Generic.Win32.34907
TrendMicroTROJ_GEN.R002C0DLV23
SophosMal/Generic-S
IkarusTrojan.SuspectCRC
JiangminTrojan/Cosmu.mez
GoogleDetected
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Win32.Cosmu
Kingsoftmalware.kb.a.1000
XcitiumPacked.Win32.MPEC.Gen@2oey7k
MicrosoftVirTool:Win32/DelfInject.gen!BO
ZoneAlarmUDS:Backdoor.Win32.Generic
GDataTrojan.Inject.GE
VaristW32/Heuristic-114!Eldorado
AhnLab-V3Malware/Win32.Generic.C4303266
BitDefenderThetaAI:Packer.C83B8E6F1E
MAXmalware (ai score=84)
VBA32Trojan.Cosmu
MalwarebytesMalware.AI.3374710607
PandaGeneric Malware
TrendMicro-HouseCallTROJ_GEN.R002C0DLV23
RisingHackTool.DelfInject!8.B26 (TFE:2:p752iloAsUD)
YandexTrojan.Agent!9cAp5kALDtU
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/PossibleThreat
AVGWin32:Trojan-gen
Cybereasonmalicious.bac518
DeepInstinctMALICIOUS

How to remove VirTool:Win32/DelfInject!BO?

VirTool:Win32/DelfInject!BO removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment