Malware

Should I remove “VirTool:Win32/DelfInject!CP”?

Malware Removal

The VirTool:Win32/DelfInject!CP is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What VirTool:Win32/DelfInject!CP virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Compression (or decompression)
  • Creates RWX memory
  • Performs some HTTP requests
  • Executed a process and injected code into it, probably while unpacking
  • Anomalous binary characteristics

Related domains:

dc608.4shared.com

How to determine VirTool:Win32/DelfInject!CP?


File Info:

crc32: 702E12F7
md5: 0f05a19cc9f3582ec2c66332f6adec02
name: 0F05A19CC9F3582EC2C66332F6ADEC02.mlw
sha1: 36fb4200b7c3f02984221e830ccac2538bee9897
sha256: 96f70091ee0a96a392416a3d9352a5f630a09132dc7b88f20753210ac8ee2068
sha512: c0edee2703dc247c8fe483dcff5cff18941fd10f4c9f135fdd7572b27ea287d748b0532711af22fd8d07ff3cc961bcae778e316298eac4b495d52780cf59e9b9
ssdeep: 3072:HF2gnX98Bq+W6Skd9lo1DY+S0z/pWaSjrPzOPl2+Y8zxIy:l2gSBdW6xs9+ycJ8z
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) PH 2012
InternalName: aaa
FileVersion: 1, 2, 0, 300
CompanyName: Nirsooft
PrivateBuild: PLA-20120211_300
Comments: Specs
ProductName: Phedex Application
ProductVersion: 1, 2, 0, 3
FileDescription: Ultrasoft Mine
OriginalFilename: aaa.EXE
Translation: 0x0409 0x04b0

VirTool:Win32/DelfInject!CP also known as:

BkavW32.Common.4A90DFB3
MicroWorld-eScanTrojan.Injector.Delf.K
CAT-QuickHealTrojan.Delfinject.16925
Qihoo-360Win32/Trojan.Dropper.e21
ALYacTrojan.Injector.Delf.K
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 7000000f1 )
BitDefenderTrojan.Injector.Delf.K
K7GWTrojan ( 7000000f1 )
Cybereasonmalicious.cc9f35
CyrenW32/Trojan.DDVP-6894
SymantecML.Attribute.HighConfidence
TotalDefenseWin32/DelfInject.ZACJ
APEXMalicious
AvastWin32:Delf-SOV [Trj]
ClamAVWin.Trojan.Injector-3118
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojan:Win32/Injector.1114389b
NANO-AntivirusTrojan.Win32.Jorik.thvxg
TencentWin32.Trojan-dropper.Dorifel.Frx
Ad-AwareTrojan.Injector.Delf.K
SophosML/PE-A + Troj/DelfInj-AN
ComodoTrojWare.Win32.Downloader.DELF.RFS@4pc2vd
F-SecureTrojan.TR/Injector.SSQ
DrWebTrojan.Siggen4.4345
ZillyaTrojan.Jorik.Win32.101777
TrendMicroTROJ_GEN.R002C0DLK20
McAfee-GW-EditionGeneric PWS.nx
FireEyeGeneric.mg.0f05a19cc9f3582e
EmsisoftTrojan.Injector.Delf.K (B)
IkarusTrojan.Win32.Rbot
JiangminTrojanDropper.Dorifel.xi
WebrootW32.Trojan.Gen
AviraTR/Injector.SSQ
Antiy-AVLTrojan/Win32.Vobfus
KingsoftWin32.Troj.Dorifel.(kcloud)
MicrosoftVirTool:Win32/DelfInject.gen!CP
ArcabitTrojan.Injector.Delf.K
SUPERAntiSpywareTrojan.Agent/Gen-Delf
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.Injector.Delf.K
CynetMalicious (score: 85)
AhnLab-V3Trojan/Win32.Inject.R27213
McAfeeGeneric PWS.nx
MAXmalware (ai score=100)
VBA32TrojanDropper.Dorifel
MalwarebytesMalware.AI.3785525909
PandaGeneric Malware
ZonerTrojan.Win32.7502
ESET-NOD32a variant of Win32/Injector.SSQ
TrendMicro-HouseCallTROJ_GEN.R002C0DLK20
RisingHackTool.DelfInject!8.B26 (TFE:3:B0ZijTdLWSL)
YandexTrojan.GenAsa!MLyC/eLZcJM
eGambitUnsafe.AI_Score_99%
FortinetW32/Injector.SSQ!tr
BitDefenderThetaGen:NN.ZelphiF.34804.iK0@aCELO8li
AVGWin32:Delf-SOV [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
MaxSecureTrojan.Malware.4174129.susgen

How to remove VirTool:Win32/DelfInject!CP?

VirTool:Win32/DelfInject!CP removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment