Malware

W32/Delf-HPC removal guide

Malware Removal

The W32/Delf-HPC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What W32/Delf-HPC virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Yara detections observed in process dumps, payloads or dropped files

How to determine W32/Delf-HPC?


File Info:

name: C601EEBF5154564E20BC.mlw
path: /opt/CAPEv2/storage/binaries/04b6926f7e233f495eaf8caf1b52a7057c2049f2f9ba7a029b788409dc1e77b8
crc32: 672EAE1A
md5: c601eebf5154564e20bcedbb5e452bc8
sha1: 767538a195540391f5b3d2f37edea3dd9f1981d4
sha256: 04b6926f7e233f495eaf8caf1b52a7057c2049f2f9ba7a029b788409dc1e77b8
sha512: ff5c8240989fa1751d10b292db3d3d348ef358dfa0d6ad07c3ca627f01354ac0ccdb2073e4299161d45619dfe11a5aa4599c5073015311e72bc1a328645e602e
ssdeep: 3072:tG5haq5iLObeJQZt32wLji5DlsODxRPNDkjJHzW9hUd56JsuBSjw52i1vP2i1a1J:Kha80Ax+1zwjJHd6vB/5NMfu+YgAY
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B7252B15ABF50B26F2F74E34A86A5934B832BD92BE00C7990546C68C0C66F51DD72F2F
sha3_384: 5f03d6dcec85593680f94c66391c0c6b1aa17c1bfd1ef5aec9bc9bf994baae24b09a8d90bb1d92ed67f7475f4775a19b
ep_bytes: 558becb9070000006a006a004975f953
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

W32/Delf-HPC also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
DrWebTrojan.Siggen6.19898
MicroWorld-eScanTrojan.GenericKDZ.96296
FireEyeGeneric.mg.c601eebf5154564e
CAT-QuickHealWorm.Antavmu .S29499354
SkyhighBehavesLike.Win32.Generic.dz
ALYacTrojan.GenericKDZ.96296
Cylanceunsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 7000000f1 )
K7GWTrojan ( 7000000f1 )
BitDefenderThetaAI:Packer.29036EFE1E
VirITWorm.Win32.DelfGen.DQC
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32Win32/Delf.NPF
APEXMalicious
TrendMicro-HouseCallPossible_Virus
AvastWin32:TrojanX-gen [Trj]
ClamAVWin.Worm.Generickdz-10012896-0
KasperskyHEUR:Trojan-Dropper.Win32.Injector.gen
BitDefenderTrojan.GenericKDZ.96296
NANO-AntivirusTrojan.Win32.Antavmu.daxbyw
RisingWorm.Delf!8.1B3 (TFE:4:yInPxZkuhvF)
EmsisoftTrojan.GenericKDZ.96296 (B)
F-SecureTrojan.TR/Dldr.Delphi.Gen
VIPRETrojan.GenericKDZ.96296
TrendMicroPossible_Virus
Trapminemalicious.high.ml.score
SophosW32/Delf-HPC
MAXmalware (ai score=85)
JiangminTrojan.Antavmu.dgo
GoogleDetected
AviraTR/Dldr.Delphi.Gen
VaristW32/Trojan.BULQ-1908
Antiy-AVLTrojan/Win32.Delf
Kingsoftmalware.kb.a.1000
MicrosoftTrojan:Win32/Grandoreiro.psyI!MTB
GridinsoftTrojan.Win32.Downloader.sa
ArcabitTrojan.Generic.D17828
ZoneAlarmHEUR:Trojan-Dropper.Win32.Injector.gen
GDataWin32.Trojan.Mumador.A
CynetMalicious (score: 100)
AhnLab-V3Malware/Win.Generic.C5605801
Acronissuspicious
McAfeeGenericRXTD-AF!C601EEBF5154
TACHYONTrojan/W32.DP-Agent.1009998
VBA32TScope.Trojan.Delf
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
ZonerProbably Heur.ExeHeaderP
TencentBackdoor.Win32.CosmicDuke.hb
YandexTrojan.GenAsa!duuQP43g4yE
IkarusBackdoor.Win32.Mumador
FortinetW32/Delf.NGO!worm
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
alibabacloudTrojan.Win.UnkAgent

How to remove W32/Delf-HPC?

W32/Delf-HPC removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment