Trojan

Trojan.Win32.Inject.aidga (file analysis)

Malware Removal

The Trojan.Win32.Inject.aidga is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Inject.aidga virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Trojan.Win32.Inject.aidga?


File Info:

crc32: 7EAEB32C
md5: 17a6ee94782c120d3e086839e7b6cf92
name: 17A6EE94782C120D3E086839E7B6CF92.mlw
sha1: d542c898d3ee930b51ebc8319a6e2e9d93a6ecda
sha256: dc38082e240f731825284d655d0acf27a3f2e52ca9a9096a04baffeb787882ba
sha512: bb3cf94013f11a319eb75fcaf71fe42d24a0c3271a3b20d118fdcd6e84fa646585af94ee812af454496151de77fe53cb5a428c6ad73d0c062ad196a3b5f6e745
ssdeep: 1536:lh0mye7+v31qf22dGubUPtxrdesHCMe/QKxS0K1JlXK:lh0mye7+v172dGubErJesHfe/QeS0aj
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
InternalName: sc.exe
FileVersion: 6.1.7600.16385 (win7_rtm.090713-1255)
CompanyName: Microsoft Corporation
ProductName: Microsoftxae Windowsxae Operating System
ProductVersion: 6.1.7600.16385
FileDescription: A tool to aid in developing services for WindowsNT
OriginalFilename: sc.exe
Translation: 0x0409 0x04b0

Trojan.Win32.Inject.aidga also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
Cybereasonmalicious.8d3ee9
CyrenW32/Virut.D.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Patched-AML
ClamAVWin.Dropper.Mikey-9810063-0
KasperskyTrojan.Win32.Inject.aidga
NANO-AntivirusVirus.Win32.Virut-Gen.bwpxnc
TencentWin32.Trojan.Inject.Dzkg
SophosGeneric ML PUA (PUA)
BitDefenderThetaGen:NN.ZexaF.34170.eq2@aWG5momi
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Virut.lh
FireEyeGeneric.mg.17a6ee94782c120d
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1107161
MicrosoftTrojan:Win32/Wacatac.B!ml
Acronissuspicious
McAfeeArtemis!17A6EE94782C
MAXmalware (ai score=99)
MalwarebytesSality.Virus.FileInfector.DDS
IkarusTrojan.Symmi
FortinetW32/Agent.NESCTG!tr
AVGWin32:Patched-AML
Paloaltogeneric.ml

How to remove Trojan.Win32.Inject.aidga?

Trojan.Win32.Inject.aidga removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment