Trojan

Trojan.Agent.DBFV removal

Malware Removal

The Trojan.Agent.DBFV is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Agent.DBFV virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • CAPE detected the shellcode get eip malware family
  • Anomalous binary characteristics
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Trojan.Agent.DBFV?


File Info:

name: CA577BB1880731200A07.mlw
path: /opt/CAPEv2/storage/binaries/a570fa08d796e6873d7f1ca2e87579cce163c1d0636c78eca6785b0d381506a6
crc32: 6A25F234
md5: ca577bb1880731200a07a98cd103ec56
sha1: f1e11a18d7d275c9d11be618eb45401bde7ff506
sha256: a570fa08d796e6873d7f1ca2e87579cce163c1d0636c78eca6785b0d381506a6
sha512: 981d2ff18eab586f3d386ce6eac183e97782bd5caa0226259782a5f3113e798ee278c0456f35f5c7174ed8c54c860db739c2de4d5fd67d5804e1529b4c3dc4a3
ssdeep: 24576:hEk57k8GTnAuuODv173DPKe8uk9VGOXoCVLoKFJNAA2B:f2fwFRZk
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D6B5230BB4C18032E0F20CB9442595E151FEFD650AA4DECB3B85726E2D715D2DA3AEB7
sha3_384: 86bbb6d13590dd73f26511ab719ebf1c2fb47ac16fc2d939d4dd6a412701e0e8dd2b21d67fc00b78a46ec77aba7fcbef
ep_bytes: e8ad030000e98efeffff558bec6a00ff
timestamp: 2018-07-09 10:37:18

Version Info:

0: [No Data]

Trojan.Agent.DBFV also known as:

BkavW32.Common.EFD57767
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Agent.DBFV
CAT-QuickHealRansom.TeslaCrypt.MUE.RF5
SkyhighGenericRXGC-ID!CA577BB18807
McAfeeGenericRXGC-ID!CA577BB18807
MalwarebytesGeneric.Malware.AI.DDS
VIPRETrojan.Agent.DBFV
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 00528e801 )
AlibabaAdWare:Win32/Kryptik.e575d4bd
K7GWTrojan ( 00528e801 )
CrowdStrikewin/malicious_confidence_90% (W)
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Kryptik.GIUB
APEXMalicious
TrendMicro-HouseCallTROJ_GEN.R002C0PBF24
Kasperskynot-a-virus:HEUR:AdWare.Win32.Generic
BitDefenderTrojan.Agent.DBFV
NANO-AntivirusTrojan.Win32.Katusha.ffbdml
AvastWin32:AdwareX-gen [Adw]
TencentTrojan.Win32.Kryptik.gicr
EmsisoftTrojan.Agent.DBFV (B)
GoogleDetected
F-SecureHeuristic.HEUR/AGEN.1317544
ZillyaAdware.Generic.Win32.97806
TrendMicroTROJ_GEN.R002C0PBF24
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.ca577bb188073120
SophosIStartSurfInstaller (PUA)
IkarusTrojan.Agent
JiangminAdWare.StartSurf.auy
VaristW32/S-a68bdb84!Eldorado
AviraHEUR/AGEN.1317544
Antiy-AVLGrayWare[Bundler]/Win32.Prepscram
Kingsoftmalware.kb.a.996
MicrosoftSoftwareBundler:Win32/Prepscram
XcitiumApplication.Win32.IStartSurf.PS@8c4m91
ArcabitTrojan.Agent.DBFV
ViRobotAdware.Agent.2493952.BA
ZoneAlarmnot-a-virus:HEUR:AdWare.Win32.Generic
GDataTrojan.Agent.DBFV
CynetMalicious (score: 100)
AhnLab-V3PUP/Win.Installer.R416545
VBA32Adware.Prepscram
ALYacTrojan.Agent.DBFV
MAXmalware (ai score=100)
Cylanceunsafe
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!8.8 (TFE:5:BsFDhTzjBGU)
YandexTrojan.GenAsa!p1rcBsL37Ho
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/GenKryptik.DAKE!tr
BitDefenderThetaGen:NN.ZexaF.36802.ywW@aS4tEDbi
AVGWin32:AdwareX-gen [Adw]
DeepInstinctMALICIOUS
alibabacloudMalware

How to remove Trojan.Agent.DBFV?

Trojan.Agent.DBFV removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment