Trojan

Trojan.Win32.DNSChanger.apn removal

Malware Removal

The Trojan.Win32.DNSChanger.apn is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.DNSChanger.apn virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Authenticode signature is invalid

How to determine Trojan.Win32.DNSChanger.apn?


File Info:

name: E9DD24F63F46ED9A2B24.mlw
path: /opt/CAPEv2/storage/binaries/986e2ff05a01d6907ba9e023ab73f9b856ac14735c86b3cbc49c5b1edb78ef05
crc32: 89933705
md5: e9dd24f63f46ed9a2b2489d6084a1097
sha1: 979705c4780123996a8924d02f57bdd7cfb0fa12
sha256: 986e2ff05a01d6907ba9e023ab73f9b856ac14735c86b3cbc49c5b1edb78ef05
sha512: 3b0627755f88a4840cc8a5daef41d7fa07a45530faf28eabd1a695573d8407246960d8f3a8e9496efeed415d0dc1c26c805cc1cba7e1adba84fbaaf31124106e
ssdeep: 1536:rcSb3PE+OCvGo/KV4lZb4AFsp54sstLvtio7k8DTTL:rPvGoiulZbTIYvYow8Dj
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T115738E63B885447BE193013109F46B64FBBE793B2534DDE7871849C66C298C2B7BF24A
sha3_384: e75d36a9a903481427fb5af23d73ee6c45848f6192acb37a9709ffb16f19c053eb9ad417a8023a33de952f1422d5ecd8
ep_bytes: f7d84f4233c3b90600400085c5555e81
timestamp: 2007-12-07 15:03:11

Version Info:

0: [No Data]

Trojan.Win32.DNSChanger.apn also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanGen:Heur.Conjar.9
FireEyeGeneric.mg.e9dd24f63f46ed9a
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 000219791 )
K7GWTrojan ( 000219791 )
CrowdStrikewin/malicious_confidence_90% (D)
CyrenW32/Trojan2.AJNE
SymantecTrojan.Gen.MBT
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/TrojanDownloader.Zlob.BXN
APEXMalicious
ClamAVWin.Malware.Conjar-9957981-0
KasperskyTrojan.Win32.DNSChanger.apn
BitDefenderGen:Heur.Conjar.9
SUPERAntiSpywareTrojan.Unclassified/K-Series
AvastWin32:DNSChanger-SK [Trj]
TencentMalware.Win32.Gencirc.10d096e0
Ad-AwareGen:Heur.Conjar.9
SophosMal/Behav-010
ComodoTrojWare.Win32.DNSChanger.APN@k133q
DrWebBackDoor.Mbot
VIPREGen:Heur.Conjar.9
McAfee-GW-Editiongeneric!bg.enl
Trapminemalicious.high.ml.score
EmsisoftGen:Heur.Conjar.9 (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Heur.Conjar.9
GoogleDetected
AviraBDS/Backdoor.Gen
Antiy-AVLTrojan/Generic.ASMalwS.143
MicrosoftTrojan:Win32/Sabsik.FL.A!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.R513627
Acronissuspicious
McAfeegeneric!bg.enl
MAXmalware (ai score=88)
VBA32suspected of Trojan-Downloader.Agent.31
MalwarebytesMalware.AI.3591242858
RisingTrojan.Zlob!1.A07E (CLASSIC)
YandexTrojan.GenAsa!cONGUGy0GTw
IkarusTrojan.Win32.DNSChanger
FortinetW32/PackRPCrypt.RPA!tr
BitDefenderThetaGen:NN.ZexaF.34698.eeW@a0Hjfkf
AVGWin32:DNSChanger-SK [Trj]
Cybereasonmalicious.63f46e
PandaGeneric Malware

How to remove Trojan.Win32.DNSChanger.apn?

Trojan.Win32.DNSChanger.apn removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment