Malware

Win32/Injector.DBFN malicious file

Malware Removal

The Win32/Injector.DBFN is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.DBFN virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/Injector.DBFN?


File Info:

crc32: DA011A4E
md5: c14274959c93ed652dd5fcea69565e7e
name: C14274959C93ED652DD5FCEA69565E7E.mlw
sha1: 3f75cb7aa415c29b185c669841f5b78ef91f1d7e
sha256: e12c47048fe9673ca02ca6d371c80c53c2bc33441d29cb833335756ca25dabdd
sha512: c31d94bc2c6b763a0b7c3d31461857702a9e3989aa215ca6e1d4fa307764c20899d19a08e869d4b67820bdb2b04f8a1be0a8600c33fb3ab22b0a0ad1cf695807
ssdeep: 6144:ma2FLuh1ajLWkl3WkjUHw/OvCQWt1Q5yckUuMxhvaAkh:ma2FLMMLT3V4HemCV1QbxsAa
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Injector.DBFN also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0053af701 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.4939
CynetMalicious (score: 100)
CAT-QuickHealRansomware.Tescrypt.WR4
ALYacTrojan.Ransom.Cerber.1
CylanceUnsafe
ZillyaTrojan.SelfDel.Win32.54337
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaRansom:Win32/Cerber.1a588e18
K7GWTrojan ( 0053af701 )
Cybereasonmalicious.59c93e
BaiduWin32.Trojan.Cerber.b
SymantecRansom.Cerber
ESET-NOD32a variant of Win32/Injector.DBFN
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Ransom.Cerber.1
NANO-AntivirusTrojan.Win32.Encoder.eehfpg
MicroWorld-eScanTrojan.Ransom.Cerber.1
TencentMalware.Win32.Gencirc.10bd38de
Ad-AwareTrojan.Ransom.Cerber.1
SophosMal/Generic-R + Troj/Cerber-DJ
ComodoTrojWare.Win32.Cerber.BAA@6hzktm
BitDefenderThetaGen:NN.ZexaF.34688.vqX@aOhwZ2ec
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_CERBER.TBT
McAfee-GW-EditionBehavesLike.Win32.Vundo.fh
FireEyeGeneric.mg.c14274959c93ed65
EmsisoftTrojan.Ransom.Cerber.1 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Selfdel.cqx
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1128763
eGambitUnsafe.AI_Score_95%
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftRansom:Win32/Cerber.A
ArcabitTrojan.Ransom.Cerber.1
AegisLabTrojan.Win32.SelfDel.4!c
GDataTrojan.Ransom.Cerber.1
TACHYONRansom/W32.Cerber.344366
AhnLab-V3Trojan/Win32.Cerber.R184172
McAfeeRansomware-FTG!C14274959C93
MAXmalware (ai score=100)
VBA32BScope.TrojanRansom.Cerber
MalwarebytesMalware.AI.906548380
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_CERBER.TBT
RisingMalware.Obscure/Heur!1.A89E (CLOUD)
YandexTrojan.SelfDel!9Z1FvDDuADU
IkarusTrojan.Win32.Injector
FortinetW32/Injector.DBMH!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Win32/Injector.DBFN?

Win32/Injector.DBFN removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment