Worm

Worm.DelfPMF.S30896276 malicious file

Malware Removal

The Worm.DelfPMF.S30896276 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Worm.DelfPMF.S30896276 virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Worm.DelfPMF.S30896276?


File Info:

name: 984A7FC7CC02D91F74B0.mlw
path: /opt/CAPEv2/storage/binaries/2f448c62aad2310c4a9814b1fc25bd3856dc7c7c64a5af3b22961d26b12dde78
crc32: 8F877453
md5: 984a7fc7cc02d91f74b08fa1d7532eb6
sha1: 998b9a3c8cedfa1e8d10e15cce8df89cc68f70e9
sha256: 2f448c62aad2310c4a9814b1fc25bd3856dc7c7c64a5af3b22961d26b12dde78
sha512: ad46af33275fa4a2db618676d43770ab3e8b5da95d7e413a8762535c04ed23ab16b4bffc7ec31b50bec82b0e788c6a7768758b642038f2f832e8f8bb202e2cde
ssdeep: 98304:EHYAu1Gs6UyF5SS9CAtlZHxhIHVruP3WpF3UdE1hZHEdkFx2We:wTGyrDhgJuP32+dmhZkaMR
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18076B01E6AD20032CE532179AA4F9104E335E4136714CBE77BCC93946FB1AE29636BF5
sha3_384: 23efcce684fc0af67eeabcf1dd6e40980660936834a34d1e1e4fef75590ca06cf1708c3cecc91a13d5801b64592bff43
ep_bytes: 558bec83c4f0b838464000e874e2ffff
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

Worm.DelfPMF.S30896276 also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanTrojan.Agent.EICV
ClamAVWin.Malware.Delf-6737076-0
CAT-QuickHealWorm.DelfPMF.S30896276
SkyhighBehavesLike.Win32.HLLP.wh
McAfeeW32/HLLP.11042.gen
MalwarebytesGeneric.Trojan.Delf.DDS
VIPRETrojan.Agent.EICV
SangforSuspicious.Win32.Save.ins
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 0053c5661 )
K7AntiVirusTrojan ( 0053c5661 )
BaiduWin32.Virus.Lamer.f
SymantecW32.SillyP2P
Elasticmalicious (high confidence)
ESET-NOD32Win32/Delf.NAY
APEXMalicious
CynetMalicious (score: 100)
KasperskyP2P-Worm.Win32.Delf.aj
BitDefenderTrojan.Agent.EICV
NANO-AntivirusTrojan.Win32.Delf.oxkq
AvastWin32:Delf-SVI [Trj]
TencentVirus.Win32.Lamer.fh
EmsisoftTrojan.Agent.EICV (B)
F-SecureTrojan.TR/Dropper.Gen
DrWebWin32.HLLW.Kazaa.924
ZillyaWorm.Delf.Win32.3450
TrendMicroTROJ_AGENT_005911.TOMB
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.984a7fc7cc02d91f
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataTrojan.Agent.EICV
JiangminWorm/Delf.vm
WebrootW32.Worm.Gen
GoogleDetected
AviraTR/Dropper.Gen
MAXmalware (ai score=84)
Antiy-AVLVirus/Win32.BagarBubba.a
Kingsoftmalware.kb.b.917
XcitiumTrojWare.Win32.Pincav.AV@2rw0ny
ArcabitTrojan.Agent.EICV
ZoneAlarmP2P-Worm.Win32.Delf.aj
MicrosoftWorm:Win32/Xolxo.A
VaristW32/Delf.QB.gen!Eldorado
AhnLab-V3Worm/Win32.Delf.R119214
Acronissuspicious
VBA32Worm.Delf
ALYacTrojan.Agent.EICV
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_AGENT_005911.TOMB
RisingWorm.P2p.Win32.Delf.bn (CLASSIC)
YandexTrojan.GenAsa!HYSjiRN/8Mk
IkarusTrojan.Agent
MaxSecureVirus.W32.Lamer.FG
FortinetW32/Aple.A
BitDefenderThetaGen:NN.ZelphiF.36744.@pZ@auciUnn
AVGWin32:Delf-SVI [Trj]
Cybereasonmalicious.c8cedf
DeepInstinctMALICIOUS

How to remove Worm.DelfPMF.S30896276?

Worm.DelfPMF.S30896276 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment