Malware

How to remove “Win32/Delf.BFA”?

Malware Removal

The Win32/Delf.BFA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Delf.BFA virus can do?

  • Creates RWX memory
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/Delf.BFA?


File Info:

crc32: B039B6AA
md5: 1120186264359a7a3edcd4b5c0d9b0fb
name: 1120186264359A7A3EDCD4B5C0D9B0FB.mlw
sha1: af742e7ccd5a738140fb08af9b210f4146e28a48
sha256: 1dc310d9e90273f1024d5a07630c423368efd1c125bb5f3768a170691eec7549
sha512: 2fba3d0266e2f0ca73fcc1df61363d762720c2876dba73babb968eced8f2d2bd25441ca80b90fec0bc4a9330b606e37881c95930beae26a9125733c7f4d2ca18
ssdeep: 12288:HrpFhbQvcF8pWQY+QcdUNp6KA3Dwao6+KVwSa/n6:Hr5l8pYxcsb6P/uR/n
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Delf.BFA also known as:

K7AntiVirusTrojan ( 7000000f1 )
CynetMalicious (score: 100)
CylanceUnsafe
ZillyaTrojan.Delf.Win32.106727
K7GWTrojan ( 7000000f1 )
Cybereasonmalicious.ccd5a7
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Delf.BFA
APEXMalicious
AvastWin32:Malware-gen
TencentWin32.Trojan.Dldr.Duce
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZelphiF.34266.JGW@aO1XjZke
McAfee-GW-EditionBehavesLike.Win32.Generic.hh
FireEyeGeneric.mg.1120186264359a7a
SentinelOneStatic AI – Malicious PE
AviraTR/Dldr.Delphi.Gen
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:Win32/Wacatac.B!ml
McAfeeArtemis!112018626435
VBA32BScope.TrojanDropper.Dinwod
FortinetW32/Delf.BEP!tr
AVGWin32:Malware-gen

How to remove Win32/Delf.BFA?

Win32/Delf.BFA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment