Trojan

Trojan.Injector.5808 removal instruction

Malware Removal

The Trojan.Injector.5808 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Injector.5808 virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan.Injector.5808?


File Info:

name: 6DEF75534C440D3EF04D.mlw
path: /opt/CAPEv2/storage/binaries/c0f1a0dde254ee6654131872df49e9b48d7418b2545e07cd567c8d8e1277cfd5
crc32: DCC6AC1E
md5: 6def75534c440d3ef04d4fe972b66f72
sha1: a7699fb941e1c09887475a3d762a74fa980d5724
sha256: c0f1a0dde254ee6654131872df49e9b48d7418b2545e07cd567c8d8e1277cfd5
sha512: 0c0dd21b995e7c8a451530004288ad490d6976c27c410146fc1d15661be406bf6c3622b97b595a6b3a06900f55e86a61bb6cd954fdafc104deffc41fd1ada437
ssdeep: 24576:WP+unmu+rgb8X4mPDiI4mUhnch72LdXUrqmXZyQYMIGmUbutzLp:WZb8ImZ6hnTNGQP4mU2Lp
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17AA58F12E642C0F2C20515F1667AA73EBAB1AF550B348F83D7F0FDB99D321619B2621D
sha3_384: 5625c8f9e2eda8b716b4864c75e07e3334b84d08311c93b2ca303943e1d47f3fc8ae95269bf7e60bbb00052ce38aaf27
ep_bytes: 558bec6aff68c824540068dc2e4e0064
timestamp: 2015-09-24 11:02:23

Version Info:

FileVersion: 1.0.0.0
FileDescription: Kid 卡布西游辅助 解放双手,速度更快。
ProductName: Kid 卡布西游辅助
ProductVersion: 1.0.0.0
CompanyName: Kid
LegalCopyright: Copyright(C) Kid.All Rights Reserved.
Comments: Kid 卡布西游辅助
Translation: 0x0804 0x04b0

Trojan.Injector.5808 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.6def75534c440d3e
CAT-QuickHealTrojan.Injector.5808
CylanceUnsafe
Cybereasonmalicious.941e1c
SymantecML.Attribute.HighConfidence
APEXMalicious
ClamAVWin.Malware.Generic-9820446-0
NANO-AntivirusTrojan.Win32.Dwn.ffyrlk
AvastWin32:Malware-gen
ComodoTrojWare.Win32.Agent.OSCF@5rs7jr
DrWebTrojan.DownLoader11.11699
McAfee-GW-EditionBehavesLike.Win32.Dropper.vt
SophosGeneric ML PUA (PUA)
IkarusWorm.Win32.Vercuser
Antiy-AVLTrojan/Generic.ASMalwS.2723D06
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
Acronissuspicious
McAfeeArtemis!6DEF75534C44
MalwarebytesMalware.AI.3590327968
RisingMalware.Heuristic!ET#98% (RDMK:cmRtazpEl3ERSpIHUDWoYF7a9aie)
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_100%
BitDefenderThetaGen:NN.ZexaF.34182.hk1@amFegbgH
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_70% (D)
MaxSecureTrojan.Malware.300983.susgen

How to remove Trojan.Injector.5808?

Trojan.Injector.5808 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment