Trojan

About “Win32/TrojanDownloader.Delf.BEC” infection

Malware Removal

The Win32/TrojanDownloader.Delf.BEC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/TrojanDownloader.Delf.BEC virus can do?

  • Attempts to connect to a dead IP:Port (1 unique times)
  • A process created a hidden window
  • Performs some HTTP requests
  • A process attempted to delay the analysis task by a long amount of time.
  • Anomalous binary characteristics

Related domains:

aktangroup.kz

How to determine Win32/TrojanDownloader.Delf.BEC?


File Info:

crc32: 3DF11F20
md5: 5164cc2c878c324665a73f6c57b25aa7
name: 5164CC2C878C324665A73F6C57B25AA7.mlw
sha1: 1739c394f363222b05fc88580ee844cac101809b
sha256: eb53d5e2ac26d3f5bd2c4c0d58670a5171197e1e7cc797004612f8801da1aa68
sha512: 5c3aef5ded42155ac9fc919f58ca1db5b866371fe7c604e79304aefada12519ae1315533dd7cfdfaebefefdd49b99c53c2a7963d3a3b68ee837ae07b8b01516b
ssdeep: 768:3C38KDDrF1K/Pm6vgUTOWnxT9TtNTofvGOt5AwaS/iKH2Srbb2dvWc8tiHT:3CpHre1uWxT9TOpQUiZSfoWcQiHT
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/TrojanDownloader.Delf.BEC also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Trojan.Heur.dGW@XQNtpji
CylanceUnsafe
AlibabaRansom:Win32/Blocker.1b3d5389
Cybereasonmalicious.c878c3
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/TrojanDownloader.Delf.BEC
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Blocker.gibz
BitDefenderGen:Trojan.Heur.dGW@XQNtpji
NANO-AntivirusTrojan.Win32.Blocker.dmgqmt
MicroWorld-eScanGen:Trojan.Heur.dGW@XQNtpji
TencentWin32.Trojan.Blocker.Stke
Ad-AwareGen:Trojan.Heur.dGW@XQNtpji
SophosMal/Generic-S
BitDefenderThetaAI:Packer.8F134B141B
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Android.kh
FireEyeGeneric.mg.5164cc2c878c3246
EmsisoftGen:Trojan.Heur.dGW@XQNtpji (B)
AviraDR/Delphi.Gen
MicrosoftBackdoor:Win32/Bladabindi!ml
AegisLabTrojan.Win32.Generic.4!c
GDataGen:Trojan.Heur.dGW@XQNtpji
AhnLab-V3Malware/Win32.Suspicious.C743397
McAfeeArtemis!5164CC2C878C
MAXmalware (ai score=82)
VBA32BScope.TrojanDownloader.Genome
PandaTrj/CI.A
RisingRansom.Blocker!8.12A (CLOUD)
YandexTrojan.Blocker!9kaMeNGCMEw
IkarusTrojan-Ransom.Blocker
FortinetW32/Blocker.GIBZ!tr
AVGWin32:Malware-gen

How to remove Win32/TrojanDownloader.Delf.BEC?

Win32/TrojanDownloader.Delf.BEC removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment