Trojan

Trojan.Inject.ASE malicious file

Malware Removal

The Trojan.Inject.ASE is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Inject.ASE virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.Inject.ASE?


File Info:

name: 1616E4D2427C11FA8138.mlw
path: /opt/CAPEv2/storage/binaries/b18a568e4abff701fc28f34a37d698c83bf61cf6d98bb063b94e908d98423891
crc32: 5DDBB29B
md5: 1616e4d2427c11fa8138fbf258445666
sha1: 298906a72ccceac3037c67325c3997ea00f40706
sha256: b18a568e4abff701fc28f34a37d698c83bf61cf6d98bb063b94e908d98423891
sha512: b6feea07e5cffd951d49f400368977df9ac9f580b07c9e5abd9cf1dea750328fdb937d8fdeefe2a24227a2c9a81bcf62952e97ba527a9355ef297a9c4a3201ed
ssdeep: 96:ZSDDsmQMKh9ctgC1RqNlenKymV44kNL66h7Hqh3rMAvx4kAYGprB9T:IvsmQMKsfqNknKfzkN7LaICAZr9T
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T124B1113AAEC51573D377DABA85F258C6FAB175213E01495E808707090C33B46EDA9B8F
sha3_384: f89c699a28ddabbe35b2451bac0c0b06b9a9a0072c09e1c1c6bfa1f556429ac84ba77ecf29662ac3e2fb2e8f7f0ce35f
ep_bytes: 8bec81c4f4feffffe8000000005b6681
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Inject.ASE also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Upatre.1j!c
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.Inject.ASE
FireEyeGeneric.mg.1616e4d2427c11fa
CAT-QuickHealTrojan.Verpackert.S12580624
SkyhighBehavesLike.Win32.Generic.zm
McAfeeGenericATG-FABE!1616E4D2427C
Cylanceunsafe
VIPRETrojan.Inject.ASE
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderTrojan.Inject.ASE
K7GWTrojan-Downloader ( 0049d22b1 )
K7AntiVirusTrojan-Downloader ( 0049d22b1 )
VirITTrojan.Win32.Upatre.A
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/TrojanDownloader.Waski.F
APEXMalicious
ClamAVWin.Dropper.Upatre-9954516-0
KasperskyHEUR:Trojan-Downloader.Win32.Upatre.gen
AlibabaTrojanDownloader:Win32/Upatre.cf7f7200
NANO-AntivirusTrojan.Win32.DownLoad3.dcdzpy
RisingDownloader.Waski!1.B69C (CLASSIC)
EmsisoftTrojan.Inject.ASE (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.DownLoad3.33795
ZillyaDownloader.Waski.Win32.52812
TrendMicroTROJ_UPATRE.SM37
Trapminemalicious.high.ml.score
SophosMal/Upatre-AS
SentinelOneStatic AI – Malicious PE
MAXmalware (ai score=85)
JiangminTrojan.Generic.ifbd
GoogleDetected
AviraTR/Crypt.XPACK.Gen
VaristW32/A-7e979cf2!Eldorado
Antiy-AVLTrojan/Win32.Upatre
Kingsoftmalware.kb.a.1000
MicrosoftTrojan:Win32/Upatre.MA!MTB
XcitiumTrojWare.Win32.TrojanDownloader.Upatre.BC@5qv3w8
ArcabitTrojan.Inject.ASE
ViRobotTrojan.Win.Z.Upatre.5584.T
ZoneAlarmHEUR:Trojan-Downloader.Win32.Upatre.gen
GDataWin32.Trojan.PSE.17P1L14
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Agent.R120254
Acronissuspicious
VBA32BScope.TrojanDownloader.Upatre
ALYacTrojan.Inject.ASE
TACHYONTrojan-Downloader/W32.Upatre.5584
DeepInstinctMALICIOUS
MalwarebytesTrojan.Downloader
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_UPATRE.SM37
TencentTrojan-Downloader.Win32.Waski.wd
YandexTrojan.GenAsa!BcZoWQSCCN0
IkarusTrojan-Downloader.Win32.Waski
MaxSecureTrojan.Upatre.Gen
FortinetW32/Waski.C!tr
BitDefenderThetaAI:Packer.821B5EBC1E
AVGWin32:Downloader-WFT [Trj]
Cybereasonmalicious.72ccce
AvastWin32:Downloader-WFT [Trj]

How to remove Trojan.Inject.ASE?

Trojan.Inject.ASE removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment