Malware

Troj/Inject-GON (file analysis)

Malware Removal

The Troj/Inject-GON is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Troj/Inject-GON virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Troj/Inject-GON?


File Info:

crc32: 3A5645B8
md5: d60b5172ece08495a237ee03bc04a53c
name: Slip-Scan-Kopie.exe
sha1: d46891a8cf0e7c99508a25c9b8bf8bcd6b795634
sha256: b2f388545f7efd0d368fdb41b7e424f3eb5336311cfa9cbdf2567464000c2c22
sha512: 219c11ca6991bdf7f1bd9c990d38f5d4987577a9fe2358152807d3ebf1469b3e871da0c15f2221829a14d0ca423eb033c40314dd7e6e1de2c34b1735f5a5e058
ssdeep: 12288:QhVKeF40BRicbRToD1whMmvlThTD3mG91gX2jU6v84fMsdF6sgDlO:QhU0RicG6b9T17mG9uX2N8DkF6pDo
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 1998-2017 Mark Russinovich
InternalName: Process Explorer
FileVersion: 16.21
CompanyName: Sysinternals - www.sysinternals.com
LegalTrademarks: Copyright (C) 1998-2017 Mark Russinovich
ProductName: Process Explorer
ProductVersion: 16.21
FileDescription: Sysinternals Process Explorer
OriginalFilename: Procexp.exe
Translation: 0x0409 0x04e4

Troj/Inject-GON also known as:

BkavW32.AIDetectVM.malware2
DrWebTrojan.Siggen10.41074
MicroWorld-eScanTrojan.GenericKDZ.70876
FireEyeGeneric.mg.d60b5172ece08495
CAT-QuickHealTrojanRansom.Blocker
McAfeeFareit-FZO!D60B5172ECE0
CylanceUnsafe
K7AntiVirusTrojan ( 0057196d1 )
BitDefenderTrojan.GenericKDZ.70876
K7GWTrojan ( 0057196d1 )
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/Bulz.C.gen!Eldorado
SymantecTrojan.Gen.MBT
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Trojan.Win32.Agentb.gen
AlibabaTrojanDownloader:Win32/Remcos.97178cdf
ViRobotTrojan.Win32.S.Agent.1069064
RisingSpyware.Agent!8.C6 (TFE:3:s3Z7mOvjSSM)
Ad-AwareTrojan.GenericKDZ.70876
ComodoMalware@#pljvkrivl8xf
VIPRETrojan.Win32.Generic!BT
InvinceaMal/Generic-S + Troj/Inject-GON
McAfee-GW-EditionFareit-FZO!D60B5172ECE0
SophosTroj/Inject-GON
SentinelOneDFI – Suspicious PE
WebrootW32.Trojan.Gen
AviraTR/Kryptik.rircw
MAXmalware (ai score=100)
MicrosoftTrojan:Win32/Remcos.ARK!MTB
ArcabitTrojan.Generic.D114DC
ZoneAlarmHEUR:Trojan.Win32.Agentb.gen
GDataTrojan.GenericKDZ.70876
AhnLab-V3Downloader/Win32.Agent.R349910
VBA32TScope.Trojan.Delf
ZonerTrojan.Win32.96393
ESET-NOD32Win32/TrojanDownloader.Delf.DBG
TencentMalware.Win32.Gencirc.11b08414
YandexTrojan.Igent.bUFtds.22
IkarusTrojan-Dropper.Win32.Delf
eGambitPE.Heur.InvalidSig
FortinetW32/GenKryptik.EUTM!tr
AVGWin32:PWSX-gen [Trj]
PandaTrj/GdSda.A
Qihoo-360Generic/Trojan.912

How to remove Troj/Inject-GON?

Troj/Inject-GON removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment