Trojan

How to remove “Trojan.Win32.Inject.aohbk”?

Malware Removal

The Trojan.Win32.Inject.aohbk is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Inject.aohbk virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan.Win32.Inject.aohbk?


File Info:

name: 21A90301054E0623CAA0.mlw
path: /opt/CAPEv2/storage/binaries/aa1925d877470bf1a305161cf61d6e2a5ce9cf872f760b620ea3ea0b2bb04eb9
crc32: 2B9A3BBD
md5: 21a90301054e0623caa0d63a27ef71b9
sha1: b9ececc7b41504ba29c8c3d6200fea55339a5478
sha256: aa1925d877470bf1a305161cf61d6e2a5ce9cf872f760b620ea3ea0b2bb04eb9
sha512: 1057c8c5987e2f2433a398dfbab0af280cae9a0e685ad3cc2ce3987623b6be7a99703ddad72451b67841b472db048e4723d0a1cca4e16080193d734566dd5bea
ssdeep: 196608:7m3xbEDPQKDYTiFYCf9HjVbeIIzigPQZNf+YJvNczHXy50k63VzYj:S3xKPQkbYCf99YI3f+YJsHi50lej
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T102963319E680E070C2E9627EE61271E4DDE07C72ED7429E7E44D3D82EF3F64A4447A89
sha3_384: 524abdb49be1e247ed14aac1043eccbfca6cf9c9dd14bc3115cb8840ffed7d93178b3dcf5101749fe41429d14db431dd
ep_bytes: 558bec83c4c453565733c08945f08945
timestamp: 1992-06-19 22:22:17

Version Info:

Comments: This installation was built with Inno Setup.
CompanyName: Grupo Crack Box Venezuela
FileDescription: Fire Dongle Crack HUAWEI by gcbv Setup
FileVersion:
LegalCopyright:
ProductName: Fire Dongle Crack HUAWEI by gcbv
ProductVersion: 1.0
Translation: 0x0000 0x04b0

Trojan.Win32.Inject.aohbk also known as:

BkavW32.Common.640FB5C5
LionicTrojan.Win32.Inject.1b!c
MicroWorld-eScanTrojan.GenericKD.67096943
FireEyeTrojan.GenericKD.67096943
SkyhighBehavesLike.Win32.PUP.rc
McAfeeArtemis!21A90301054E
MalwarebytesGeneric.Malware/Suspicious
SangforTrojan.Win32.Inject.V3b8
Cybereasonmalicious.1054e0
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/Packed.EnigmaProtector.Y suspicious
KasperskyTrojan.Win32.Inject.aohbk
BitDefenderTrojan.GenericKD.67096943
AvastWAT:Blacked-Q
TencentWin32.Trojan.Inject.Rimw
SophosMal/Generic-S
F-SecureHeuristic.HEUR/AGEN.1314164
VIPRETrojan.GenericKD.67096943
Trapminemalicious.high.ml.score
EmsisoftTrojan.GenericKD.67096943 (B)
IkarusTrojan-Dropper
GoogleDetected
AviraHEUR/AGEN.1314164
VaristW32/ABApplication.IKPS-2942
Antiy-AVLTrojan/Win32.BTSGeneric
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Generic.D3FFD16F
ZoneAlarmTrojan.Win32.Inject.aohbk
GDataTrojan.GenericKD.67096943
ALYacTrojan.GenericKD.67096943
MAXmalware (ai score=88)
Cylanceunsafe
RisingTrojan.Win32.Generic.1987E7D1 (C64:YzY0OuQGOtd0L9vX)
FortinetRiskware/Patcher
AVGWAT:Blacked-Q
DeepInstinctMALICIOUS
alibabacloudTrojan:Win/Packed.EnigmaProtector.Y

How to remove Trojan.Win32.Inject.aohbk?

Trojan.Win32.Inject.aohbk removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment