Trojan

Should I remove “Trojan.Injexa”?

Malware Removal

The Trojan.Injexa is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Injexa virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • A process created a hidden window
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Executed a process and injected code into it, probably while unpacking
  • Installs itself for autorun at Windows startup

How to determine Trojan.Injexa?


File Info:

crc32: BC2BC0CB
md5: 4eef064479e814f52fbb93e443e61841
name: 4EEF064479E814F52FBB93E443E61841.mlw
sha1: a687b1b13593aed25a7e51264a8980b9c8f1469e
sha256: 11d92a8bbd12d0f4634904ccc0037f58e99ab9d71e8341930a25564b3f2dec78
sha512: 20a3974bca03814f89a502af8f66447b7836d244e073a81454b1432dc4b280ae62f99e91d01d30c2451f69f0d3913af6409c747b112889edd8191f8c29d04673
ssdeep: 12288:mQ1r/g7xrwYzp9UROHdZvV/0jxfEeu+vU9/IzWSUObiZJZvy4DNSTCBA3:mQYp9PHz29EevvY/dSpbiZby4AuW3
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Hashalf Corporation. All rights reserved
InternalName: Bought Key
FileVersion: 8.3.6.398
Doctor: Act
CompanyName: Hashalf Corporation
ProductName: Hashalfxae Close alsoxae
ProductVersion: 8.3.6.398
FileDescription: Hashalf Close also
OriginalFilename: reply.dll
Translation: 0x0409 0x04b0

Trojan.Injexa also known as:

MicroWorld-eScanTrojan.GenericKD.45059893
FireEyeTrojan.GenericKD.45059893
McAfeeTrojan-FRGC!4EEF064479E8
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderTrojan.GenericKD.45059893
K7GWTrojan ( 00574d891 )
K7AntiVirusTrojan ( 00574d891 )
CyrenW32/Agent.CEB.gen!Eldorado
SymantecTrojan.Maltrec.TS
AvastWin32:DangerousSig [Trj]
ClamAVWin.Packed.Barys-9811555-0
KasperskyHEUR:Trojan.Win32.Injexa.gen
AlibabaTrojan:Win32/Qakbot.5f5dbf52
Ad-AwareTrojan.GenericKD.45059893
EmsisoftMalCert.A (A)
ComodoMalware@#vkprz8s04yz1
F-SecureTrojan.TR/AD.Qbot.jccej
DrWebTrojan.Inject4.6299
TrendMicroTrojan.Win32.QAKBOT.DRQG
McAfee-GW-EditionTrojan-FRGC!4EEF064479E8
SophosMal/Generic-S
JiangminTrojan.Injexa.fd
AviraTR/AD.Qbot.jccej
MAXmalware (ai score=81)
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Qakbot.V!cert
GridinsoftTrojan.Win32.Downloader.oa
ArcabitTrojan.Generic.D2AF8F35
ZoneAlarmHEUR:Trojan.Win32.Injexa.gen
GDataTrojan.GenericKD.45059893
CynetMalicious (score: 85)
AhnLab-V3Malware/Win32.Generic.C4266224
ALYacTrojan.Agent.QakBot
VBA32Trojan.Injexa
MalwarebytesBackdoor.Qbot
PandaTrj/CI.A
ESET-NOD32a variant of Win32/GenCBL.QN
TrendMicro-HouseCallTrojan.Win32.QAKBOT.DRQG
IkarusTrojan-Downloader.Win32.Icedid
FortinetW32/GenCBL.QN!tr
WebrootW32.Trojan.Gen
AVGWin32:DangerousSig [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.7b3

How to remove Trojan.Injexa?

Trojan.Injexa removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment