Trojan

Trojan.Win32.Inject.aifxu removal tips

Malware Removal

The Trojan.Win32.Inject.aifxu is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Inject.aifxu virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • Unconventionial language used in binary resources: Russian
  • Executed a process and injected code into it, probably while unpacking
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Win32.Inject.aifxu?


File Info:

crc32: F1F6CC5D
md5: 40cb235dd5ef466a78f708cb434e4c28
name: 40CB235DD5EF466A78F708CB434E4C28.mlw
sha1: 88b8eef2e1fb08f175e92256284cbd2c457f9ade
sha256: 1e3060e16553a4bcd5b30511cc102f49b4173d60989b0d3f1358adbce5fbb66e
sha512: 07b69014f5f7eee307e36a46d41a63c4b5ff53feb4a3f759dd42435375d17d1fabb79b929d30f876671764e71b371d69787564966731de03247df62e6e339cce
ssdeep: 98304:Hu7gTFYgH5HtVmIAERJWhkKtr0s8E5Py5WIb:OKWgH1tUIAERJW3h0s8E5ub
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

FileVersion: 33.6.7.51
LegalTrademarks: xLegalTrademarks
Comments: xComments
ProductName: xProductName
ProgramID: xProgramID
ProductVersion: 1.2.4.54
FileDescription: xFileDescription
OriginalFilename: xOriginalFilename
Translation: 0x0408 0x04e5

Trojan.Win32.Inject.aifxu also known as:

BkavW32.AIDetect.malware1
K7AntiVirusAdware ( 004f3e551 )
Elasticmalicious (high confidence)
DrWebTrojan.InstallMonster.2570
CAT-QuickHealTrojan.Inject.A11
McAfeePUP-XDZ-RH
CylanceUnsafe
ZillyaTrojan.GenericKD.Win32.107303
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
K7GWAdware ( 004f3e551 )
Cybereasonmalicious.dd5ef4
CyrenW32/AdAgent.AX.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/InstallMonstr.QU potentially unwanted
APEXMalicious
AvastWin32:Adware-gen [Adw]
CynetMalicious (score: 99)
KasperskyTrojan.Win32.Inject.aifxu
BitDefenderGen:Heur.Mint.Dreidel.@V1@xisOKklk
NANO-AntivirusTrojan.Win32.Inject.exrfii
MicroWorld-eScanGen:Heur.Mint.Dreidel.@V1@xisOKklk
TencentMalware.Win32.Gencirc.10b12a24
SophosInstall Monster (PUA)
ComodoApplication.Win32.InstallMonster.HN@7jiloq
BitDefenderThetaGen:NN.ZelphiF.34266.@V1@aisOKklk
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.wm
EmsisoftGen:Heur.Mint.Dreidel.@V1@xisOKklk (B)
JiangminTrojan.Inject.ambl
Antiy-AVLTrojan/Generic.ASMalwS.2451FAA
MicrosoftTrojan:Win32/Occamy.C
GDataGen:Heur.Mint.Dreidel.@V1@xisOKklk
TACHYONTrojan/W32.DP-Inject.7516672
AhnLab-V3PUP/Win32.InstallMonster.R219790
Acronissuspicious
VBA32Trojan.Inject
MAXmalware (ai score=99)
MalwarebytesAdware.InstallMonster
PandaTrj/Genetic.gen
YandexTrojan.GenAsa!JNeGlqWpdu0
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Injector.CTWA!tr
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Trojan.Win32.Inject.aifxu?

Trojan.Win32.Inject.aifxu removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment