Trojan

Should I remove “Trojan.Win32.Injuke.evii”?

Malware Removal

The Trojan.Win32.Injuke.evii is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Injuke.evii virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Expresses interest in specific running processes
  • Reads data out of its own binary image
  • A process created a hidden window
  • The binary likely contains encrypted or compressed data.
  • Executed a process and injected code into it, probably while unpacking
  • Checks for the presence of known windows from debuggers and forensic tools
  • Tries to unhook or modify Windows functions monitored by Cuckoo
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Checks for the presence of known devices from debuggers and forensic tools
  • Creates a copy of itself
  • Anomalous binary characteristics

How to determine Trojan.Win32.Injuke.evii?


File Info:

crc32: 50CFE5B5
md5: 2b244a39571ab27f7bb4174d460adeef
name: 2B244A39571AB27F7BB4174D460ADEEF.mlw
sha1: 5b20d466ff8347ef551b703978f7dbe6c0787e28
sha256: 2244783a1e531eb90413461e1be61bab495b2bdb875da427efabd7e82491445b
sha512: 6ce5355adce1894b8f119fc6102761f3c3ec9bcbf565c41a49ccf4f35ebb78f9e334d4da30b7e547ba515d9d18610a1ebeac9e9ad31032b590119aa3ab9550ae
ssdeep: 98304:JilxDj8O0Q1ydIOJANL6zCAgOiR+b+xypZml0hXF0oBt:Axv8M1yuaGmuAgu+cml0
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Win32.Injuke.evii also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005821161 )
LionicTrojan.Win32.Injuke.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.37553920
CylanceUnsafe
ZillyaTrojan.Hesv.Win32.10034
SangforTrojan.Win32.Injuke.evii
CrowdStrikewin/malicious_confidence_70% (W)
AlibabaTrojan:Win32/Injuke.bc700853
K7GWTrojan ( 005821161 )
CyrenW32/Trojan.ZYVS-8412
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan.Win32.Injuke.evii
BitDefenderTrojan.GenericKD.37553920
NANO-AntivirusTrojan.Win32.Injuke.jamytx
MicroWorld-eScanTrojan.GenericKD.37553920
TencentWin32.Trojan.Injuke.Hqvk
Ad-AwareTrojan.GenericKD.37553920
SophosMal/Generic-R + Troj/Steal-CBF
ComodoMalware@#b1fq4tzthz2i
F-SecureTrojan.TR/Redcap.ckzzq
BitDefenderThetaGen:NN.ZexaF.34294.@JW@aO9cm5ii
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R053C0WII21
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.rc
FireEyeGeneric.mg.2b244a39571ab27f
EmsisoftTrojan.GenericKD.37553920 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Invader.dwm
WebrootW32.Malware.Gen
AviraTR/Redcap.ckzzq
Antiy-AVLTrojan/Win32.Injuke
MicrosoftTrojan:Win32/Tnega!ml
ArcabitTrojan.Generic.D23D0700
GDataTrojan.GenericKD.37553920
AhnLab-V3Trojan/Win.Generic.C4662726
MAXmalware (ai score=85)
VBA32Trojan.Injuke
MalwarebytesTrojan.Injuke
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R053C0WII21
YandexTrojan.GenAsa!i/3UqXlg7Dk
IkarusTrojan.SuspectCRC
MaxSecureTrojan.Malware.12191244.susgen
FortinetW32/Injuke.EVII!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.Win32.Injuke.evii?

Trojan.Win32.Injuke.evii removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment