Malware

Win32/Injector.DXCB removal

Malware Removal

The Win32/Injector.DXCB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.DXCB virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Unconventionial language used in binary resources: Portuguese
  • Authenticode signature is invalid

How to determine Win32/Injector.DXCB?


File Info:

name: 286ADA60741B10A7EC60.mlw
path: /opt/CAPEv2/storage/binaries/14cb441f3e6c8dbf812b735e214bfb89fdbaf7eafd0ff6e985df3bff16519f86
crc32: BCF55826
md5: 286ada60741b10a7ec60112d0abb627a
sha1: 7a9ffc3a0b24843467c0ce77d2e0ece8126077fa
sha256: 14cb441f3e6c8dbf812b735e214bfb89fdbaf7eafd0ff6e985df3bff16519f86
sha512: c926f26293f03ae65d9d863f5a37110194dde2fe042a479f0dbd92ce1af910dc5e1c8e05791fb3398ea1e516e0220976b07a6eb7f242b27f15505a2ac214f3a9
ssdeep: 6144:0db6cO3EfOYApkKbY7Vzy2rqKSPAQB8r+b:MR7VzyiMQ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D5941239799390BAE08941B0D1B20DE98FBCBC1731E636BFCF6450817964A989172EF1
sha3_384: f70bbeb4657217f77813319cfd2ae6975224aa42b382303aceef3076b1a94581467d6619c27d099195f1ba765dec25aa
ep_bytes: 558bec6aff68b0904000681447400064
timestamp: 1999-12-01 18:58:28

Version Info:

0: [No Data]

Win32/Injector.DXCB also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Zusy.319222
CAT-QuickHealBackdoor.Androm.S1305515
ALYacGen:Variant.Zusy.319222
CylanceUnsafe
ZillyaBackdoor.Androm.Win32.45021
Sangfor[ARMADILLO V1.71]
K7AntiVirusTrojan ( 005135601 )
K7GWTrojan ( 005135601 )
Cybereasonmalicious.0741b1
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.DXCB
APEXMalicious
ClamAVWin.Trojan.Gamarue-7440311-0
KasperskyHEUR:Worm.Win32.Oxynoxy.gen
BitDefenderGen:Variant.Zusy.319222
NANO-AntivirusTrojan.Win32.Androm.ernnnp
AvastWin32:Patched-AJW [Trj]
TencentMalware.Win32.Gencirc.10ba8fcd
Ad-AwareGen:Variant.Zusy.319222
SophosML/PE-A
ComodoTrojWare.Win32.Crypt.AI@77d6h5
DrWebTrojan.Packed2.40557
VIPREGen:Variant.Zusy.319222
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.286ada60741b10a7
EmsisoftGen:Variant.Zusy.319222 (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Zusy.319222
JiangminBackdoor.Androm.sbo
AviraTR/Dropper.Gen
MAXmalware (ai score=81)
Antiy-AVLTrojan/Generic.ASMalwS.3C54
ViRobotTrojan.Win32.XPacker.Gen
MicrosoftVirTool:Win32/CeeInject.UQ!bit
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Kryptik.C2057957
VBA32BScope.Trojan.Lethic
MalwarebytesLamer.Virus.FileInfector.DDS
RisingTrojan.Generic@AI.100 (RDML:j/6RfiTxzD3C5+CPZlKlFQ)
YandexTrojan.GenAsa!3UqDFc9Lpyg
IkarusTrojan-PWS.Win32.Zbot
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Injector.DQID!tr
BitDefenderThetaGen:NN.ZexaF.34806.BqW@auWlS2oG
AVGWin32:Patched-AJW [Trj]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Win32/Injector.DXCB?

Win32/Injector.DXCB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment