Threat Search: 

ThreatExpert's Statistics for Mal/Delf-M [Sophos]:

Mal/Delf-M [Sophos] is also known as:
Threat AliasNumber of Incidents
Downloader [Symantec]100
TrojanSpy:Win32/Hitpop.gen!C [Microsoft]70
TrojanSpy:Win32/Hitpop.AI [Microsoft]58
Virus.Win32.Delf.HNJ [Ikarus]47
Trojan-GameThief.Win32.Lmir [Ikarus]38
Win-Trojan/Xema.variant [AhnLab]33
Downloader-AZN [McAfee]27
Trojan.KillAV [Symantec]26
Trojan:Win32/Abndog.A [Microsoft]24
Virus.Win32.Agent.SIM [Ikarus]24
Infostealer [Symantec]20
Generic PWS.y [McAfee]19
Spy-Agent.br.dll [McAfee]18
Trojan-Downloader.Delphi [Ikarus]18
Trojan.Win32.KillAV.cbi [Kaspersky Lab]17
Worm.Win32.AutoRun.rek [Kaspersky Lab]16
TrojanSpy:Win32/Hitpop.AG [Microsoft]14
W32.Gammima [Symantec]14
W32.Hitapop [Symantec]14
BehavesLike.Trojan-Downloader [Ikarus]13
Downloader-AZN.gen [McAfee]13
Trojan Horse [Symantec]13
Downloader.Trojan [Symantec]12
W32/AutoRun.worm.gen [McAfee]11
Downloader.gen.a [McAfee]9
Mal_Infostl [Trend Micro]9
Trojan-Downloader.Win32.Banload [Ikarus]9
Trojan-Downloader.Win32.Banload.yhy [Kaspersky Lab]9
Trojan-Spy.Win32.Pophot.gnq [Kaspersky Lab]9
Trojan-Downloader.Win32.Small [Ikarus]8
W32/Autorun.worm.gen [McAfee]8
Worm.Win32.AutoRun.zqs [Kaspersky Lab]8
Generic Downloader.x [McAfee]7
Suspicious.MH690 [Symantec]7
Trojan.Cymdos [Symantec]7
Trojan-Downloader.Win32.Agent.adtc [Kaspersky Lab]7
Trojan-Spy.Win32.Pophot.bod [Kaspersky Lab]7
Worm.AutoRun!sd6 [PC Tools]6
Trojan-Dropper.Agent [Ikarus]5
Worm.Win32.AutoRun.yar [Kaspersky Lab]5
Backdoor.Trojan [Symantec]4
Backdoor.Win32.DarkMoon.BE [Ikarus]4
Downloader.Bancos!gen [Symantec]4
Generic Downloader.g [McAfee]4
Generic Downloader.z [McAfee]4
Generic.cd [McAfee]4
PWS.Win32 [Ikarus]4
PWS:Win32/Bividon.gen [Microsoft]4
PWS:Win32/QQpass.CZ [Microsoft]4
PWS-QQGame [McAfee]4
Trojan.DL.Agent.FSV [PC Tools]4
Trojan.PR.Delf.BAIG [PC Tools]4
Trojan-Downloader.Win32.Agent.aqr [Kaspersky Lab]4
Trojan-Downloader.Win32.Delf.aev [Ikarus]4
Trojan-Downloader.Win32.Delf.aev [Kaspersky Lab]4
Trojan-Downloader.Win32.Small.bfz [Kaspersky Lab]4
Trojan-Downloader.Win32.Zlob.aei [Kaspersky Lab]4
TrojanDownloader:Win32/Small.gen!Z [Microsoft]4
TrojanDownloader:Win32/Tearspear [Microsoft]4
Trojan-Proxy.Win32.Delf.dy [Kaspersky Lab]4
Trojan-Spy.Win32.Pophot.bhb [Kaspersky Lab]4
W32/Autorun.worm.fq [McAfee]4
Win-Trojan/Downloader.5632.W [AhnLab]4
Win-Trojan/OnlineGameHack.B [AhnLab]4
Worm.Win32.AutoRun.aaxd [Kaspersky Lab]4
Worm.Win32.AutoRun.afbs [Kaspersky Lab]4
Worm.Win32.AutoRun.mbj [Kaspersky Lab]4
Generic.dx [McAfee]3
PWS-Banker [McAfee]3
PWS-Mmorpg.gen [McAfee]3
Trojan.Zlob [Symantec]3
Trojan:Win32/Trufip!rts [Microsoft]3
Trojan-Downloader.Win32.Delf [Ikarus]3
Trojan-Spy.Pophot!sd6 [PC Tools]3
Trojan-Spy.Win32.Pophot.bke [Kaspersky Lab]3
Trojan-Spy.Win32.Pophot.bki [Kaspersky Lab]3
Win-Trojan/Agent.132096.AE [AhnLab]3
Worm.Win32.AutoRun.nfq [Kaspersky Lab]3
BehavesLikeTrojan.Downloader [Ikarus]2
Downloader.Bancos [Symantec]2
Generic Downloader.ab [McAfee]2
Generic Malware.eb [McAfee]2
Generic.dh [McAfee]2
Infostealer.Gampass [Symantec]2
Mal_Banker [Trend Micro]2
Puper!d [McAfee]2
PWS:Win32/QQpass.gen!C [Microsoft]2
Trojan.OnlineGames.Gen.87 [PC Tools]2
Trojan.Win32.Agent.acaa [Kaspersky Lab]2
Trojan.Zlob [Ikarus]2
Trojan.Zlob [PC Tools]2
Trojan-Downloader.Win32.Delf.ACC [Ikarus]2
Trojan-Downloader.Win32.Delf.ayz [Ikarus]2
Trojan-Downloader.Win32.Delf.ayz [Kaspersky Lab]2
Trojan-Downloader.Win32.Small.eaa [Kaspersky Lab]2
Trojan-Downloader.Win32.Small.eoy [Kaspersky Lab]2
TrojanDownloader:Win32/Small [Microsoft]2
TrojanDownloader:Win32/Small.gen!F [Microsoft]2
Trojan-Dropper.Delf [Ikarus]2
Trojan-GameThief.Win32.OnLineGames [Ikarus]2

Mal/Delf-M [Sophos] has the following possible countries of origin:
OriginNumber of Incidents
Brazil35
China6
Russian Federation2

Mal/Delf-M [Sophos] is known to be created as:
%AppData%\key folder\sql2005.dll
%System%\a0e5b04.dll
%System%\a5b2d12.dll
%System%\a5b4d32.dll
%System%\a5c2c26.dll
%System%\b1a1a76.exe
%System%\b4a6d28.dll
%System%\b6d7e53.dll
%System%\b7d2a34.dll
%System%\b8b7e71.dll
%System%\c3a6e45.dll
%System%\c3c2c60.dll
%System%\c7e7e71.dll
%System%\centrr.dll
%System%\d1a5e67.dll
%System%\d1e1c17.dll
%System%\d4e6b17.dll
%System%\d5c6b42.dll
%System%\dll234.dll
%System%\dllcc32.dll
%System%\dllcc32a.dll
%System%\e6b4d11.dll
%System%\e6d8c73.dll
%System%\e8a4b65.dll
%System%\e8d2c72.dll
%System%\msiupdata.dll
%System%\mycc32.dll
%System%\mycgc32.dll
%System%\portablemsi.dll
%System%\qq.dll
%System%\randll32.exe
%System%\registryinfo2.dll
%System%\rsvtub.dll
%System%\rundll64.exe
%System%\windowsupdata.dll
%System%\winsys32_071012.dll
%System%\winupd.exe
%System%\wmcomg.dll
%System%\wpa.exe
%System%\zsmscc32.dll
%Temp%\888.exe
%Windir%\kbdfi32.dll
%Windir%\system\dljj32a.dll
%Windir%\system\llajyn32a.dll
%Windir%\system\llbjyn32bb.dll
%Windir%\system\lljy32.dll
%Windir%\system\lljyn32.dll
%Windir%\system\llsjy32.dll
%Windir%\system\mzjj32dla.dll
%Windir%\system\zhqb32.dll
%Windir%\system\zjj32dla.dll
%Windir%\system\zydld32080613.dll
%Windir%\system\zydld32080613jt.dll
%Windir%\system\zydld32080617.dll
%Windir%\system\zydld32080617jt.dll
%Windir%\system\zydld32080719.dll
%Windir%\system\zydld32080719jt.dll
%Windir%\system\zydld32080731.dll
%Windir%\system\zydld32080731jt.dll
%Windir%\system\zyndld32080804.dll
%Windir%\system\zyndld32080804jt.dll
%Windir%\system\zyndld32080825.dll
%Windir%\system\zyndld32080825jt.dll
%Windir%\system\zyndld32080828.dll
%Windir%\system\zyndld32080828jt.dll
%Windir%\system\zyndld32080829.dll
%Windir%\system\zyndld32080829jt.dll
%Windir%\system\zyndld32080830.dll
%Windir%\system\zyndld32080830jt.dll
%Windir%\system\zyndld32080831.dll
%Windir%\system\zyndld32080831jt.dll
%Windir%\system\zyndld32080902.dll
%Windir%\system\zyndld32080902jt.dll
%Windir%\system\zyndld32080907.dll
%Windir%\system\zyndld32080907jt.dll
%Windir%\system\zyndld32080910.dll
%Windir%\system\zyndld32080910jt.dll
%Windir%\system\zyndld32080913.dll
%Windir%\system\zyndld32080913jt.dll
%Windir%\system\zyndld32080916.dll
%Windir%\system\zyndld32080916jt.dll
%Windir%\system\zyndld32080920.dll
%Windir%\system\zyndld32080920jt.dll
%Windir%\system\zyndld32080921.dll
%Windir%\system\zyndld32080921jt.dll
%Windir%\system\zyndld32080926.dll
%Windir%\system\zyndld32080926jt.dll
%Windir%\system\zyndld32081001.dll
%Windir%\system\zyndld32081001jt.dll
%Windir%\system\zyndld32081003.dll
%Windir%\system\zyndld32081003jt.dll
%Windir%\system\zyndld32081004.dll
%Windir%\system\zyndld32081004jt.dll
%Windir%\system\zyndld32081006.dll
%Windir%\system\zyndld32081006jt.dll
%Windir%\system\zyndld32081017.dll
%Windir%\system\zyndld32081017jt.dll
%Windir%\system\zyndld32081025.dll
%Windir%\system\zyndld32081025jt.dll
%Windir%\system\zyndld32081030.dll
Notes:
  • %AppData% is a variable that refers to the file system directory that serves as a common repository for application-specific data. A typical path is C:\Documents and Settings\[UserName]\Application Data.
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.