Malware

Win32:Injecter-AU [Trj] information

Malware Removal

The Win32:Injecter-AU [Trj] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32:Injecter-AU [Trj] virus can do?

  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs

How to determine Win32:Injecter-AU [Trj]?


File Info:

crc32: 75C45F17
md5: 5cf13060ef033bcfcae9204d53ed5af8
name: 5CF13060EF033BCFCAE9204D53ED5AF8.mlw
sha1: ba2f00745873461cd3122173c22433499f19867c
sha256: a93d0477dceca951630e40906ca5c63f3e0e1265805a1f0ebc0bf68d4c78699a
sha512: c7c7da1df4a2c92f14410630979f9e139faceb1ec7ad3e49364e0422d14f5a77561920aac94f4673b73daca2bbb9a76e0b3bc3e870d1e2bcf92c1765f538e20d
ssdeep: 1536:VUcYulPUeIeeqkWMM3DeJtwD747tTCwywoKxXH:V/dIeelhMzeJtwPYCpw5H
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Win32:Injecter-AU [Trj] also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 004bcce41 )
Elasticmalicious (high confidence)
DrWebWin32.HLLW.Socks.4
CynetMalicious (score: 100)
CAT-QuickHealTrojan.BlockerRI.S13035091
ALYacBackdoor.IRCBot.ACGB
CylanceUnsafe
ZillyaWorm.Socks.Win32.635
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 004bcce41 )
Cybereasonmalicious.0ef033
BaiduWin32.Backdoor.IRCBot.a
CyrenW32/Socks.A.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32Win32/Socks.EX
APEXMalicious
AvastWin32:Injecter-AU [Trj]
ClamAVWin.Worm.Socks-12
KasperskyTrojan-Ransom.Win32.Blocker.jaxq
BitDefenderBackdoor.IRCBot.ACGB
NANO-AntivirusTrojan.Win32.Socks.wbrnt
MicroWorld-eScanBackdoor.IRCBot.ACGB
TencentTrojan.Win32.Gandcrab.q
Ad-AwareBackdoor.IRCBot.ACGB
SophosMal/Generic-S
ComodoWorm.Win32.Socks.EX@9uvh
BitDefenderThetaAI:Packer.31D316861E
VIPREWorm.Win32.Socks.bt (fs)
TrendMicroWORM_SOCKS.EJ
McAfee-GW-EditionBehavesLike.Win32.PWSOnlineGames.ch
FireEyeGeneric.mg.5cf13060ef033bcf
EmsisoftBackdoor.IRCBot.ACGB (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanDownloader.Small.sui
AviraTR/Drop.Agent.snu
eGambitUnsafe.AI_Score_99%
MicrosoftBackdoor:Win32/Koceg.gen!A
AegisLabTrojan.Win32.Blocker.tpWX
ZoneAlarmTrojan-Ransom.Win32.Blocker.jaxq
GDataBackdoor.IRCBot.ACGB
AhnLab-V3Malware/Win32.RL_Generic.R290723
Acronissuspicious
McAfeeBackDoor-DOQ
MAXmalware (ai score=84)
VBA32BScope.Worm.Socks
MalwarebytesGeneric.Trojan.Malicious.DDS
PandaW32/Agent.IPJ.worm
TrendMicro-HouseCallWORM_SOCKS.EJ
RisingWorm.Autorun!1.BC78 (CLASSIC)
YandexWorm.Socks!H2+NypLNPAA
IkarusWorm.Socks
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Socks.HF!worm
AVGWin32:Injecter-AU [Trj]
Paloaltogeneric.ml

How to remove Win32:Injecter-AU [Trj]?

Win32:Injecter-AU [Trj] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment