Trojan

What is “Win32/TrojanDownloader.Delf.DCJ”?

Malware Removal

The Win32/TrojanDownloader.Delf.DCJ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/TrojanDownloader.Delf.DCJ virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Unconventionial language used in binary resources: Vietnamese
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/TrojanDownloader.Delf.DCJ?


File Info:

crc32: 91475393
md5: c95621a5833fdf0e55febef5da3e29b0
name: C95621A5833FDF0E55FEBEF5DA3E29B0.mlw
sha1: f164bb83927b2c0df1ba30b2ad2027865fed8630
sha256: 943ff6246e04df7820f06c61b030b6c18249664ad2fbf34d09f3e6306e565c88
sha512: 89a91d179d69107ea446ee985c356878de0a952b898941430c7788468529ba975824f428400cf2481670cdc73d00c5050fecda0869fc7130271fc270145d5ca8
ssdeep: 12288:gZfbY6IbcKK04S+955Vy7XRVXCP0XbAfX47xC/eKRKBT:gF8OKfKPcyeUfX47xCy
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: TTTTTTTT992-2019. All rights reserved.
InternalName: TTTTTTTTetWal.exe
FileVersion: 10.7.TTTTTTTT79.0
CompanyName: TTTTTTTT
LegalTrademarks: TTTTTTTTtrademarks of ESET.
ProductName: TTTTTTTTalcurity
ProductVersion: 1TTTTTTTT2.1.34.0
FileDescription: eTTTTTTTTtWal
OriginalFilename: TTTTTTTTr.exe
Translation: 0x0409 0x04e4

Win32/TrojanDownloader.Delf.DCJ also known as:

BkavW32.AIDetectVM.malware1
McAfeeFareit-FZO!C95621A5833F
MalwarebytesTrojan.Dropper
AegisLabTrojan.Win32.Blocker.j!c
SangforMalware
K7AntiVirusTrojan-Downloader ( 00570d4e1 )
BitDefenderGen:Variant.Zusy.353921
K7GWTrojan-Downloader ( 00570d4e1 )
ArcabitTrojan.Zusy.D56681
SymantecML.Attribute.HighConfidence
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Ransom.Win32.Blocker.gen
AlibabaTrojanDownloader:Win32/Fareit.9a650a46
MicroWorld-eScanGen:Variant.Zusy.353921
Ad-AwareGen:Variant.Zusy.353921
SophosMal/Generic-S
ComodoMalware@#wso5g4oq26nx
F-SecureTrojan.TR/Dldr.Delf.zxeid
DrWebTrojan.DownLoader36.26314
TrendMicroTrojanSpy.Win32.FAREIT.THLOIBO
McAfee-GW-EditionFareit-FZO!C95621A5833F
FireEyeGeneric.mg.c95621a5833fdf0e
EmsisoftGen:Variant.Zusy.353921 (B)
JiangminAdWare.Generic.kesv
AviraTR/Dldr.Delf.zxeid
eGambitPE.Heur.InvalidSig
MAXmalware (ai score=82)
KingsoftWin32.Troj.Undef.(kcloud)
GridinsoftTrojan.Win32.Downloader.oa!s1
MicrosoftTrojan:Win32/Ymacco.AA94
ZoneAlarmHEUR:Trojan-Ransom.Win32.Blocker.gen
GDataGen:Variant.Zusy.353921
AhnLab-V3Trojan/Win32.Fareit.R357422
VBA32BScope.Trojan.Wacatac
ALYacGen:Variant.Zusy.353921
ESET-NOD32Win32/TrojanDownloader.Delf.DCJ
TrendMicro-HouseCallTrojanSpy.Win32.FAREIT.THLOIBO
IkarusTrojan-Downloader.Win32.Delf
FortinetW32/Fareit.FZO!tr
BitDefenderThetaGen:NN.ZelphiF.34670.QG2@amo6hLcO
AVGFileRepMalware
CrowdStrikewin/malicious_confidence_60% (D)
Qihoo-360Generic/Trojan.89d

How to remove Win32/TrojanDownloader.Delf.DCJ?

Win32/TrojanDownloader.Delf.DCJ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment