Trojan

Trojan.Win32.Injuke.fgus removal instruction

Malware Removal

The Trojan.Win32.Injuke.fgus is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Injuke.fgus virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Unconventionial language used in binary resources: Russian
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan.Win32.Injuke.fgus?


File Info:

name: BDDC88DE480D3BE44B76.mlw
path: /opt/CAPEv2/storage/binaries/29c21dfbd286de4e1ef151053a40b5de880607c0edf38f5b77a5721b1342bb61
crc32: 860D7E02
md5: bddc88de480d3be44b7627fcb3912392
sha1: a69097d41804088b6a0bd1fe3d1ecc1f2a39497c
sha256: 29c21dfbd286de4e1ef151053a40b5de880607c0edf38f5b77a5721b1342bb61
sha512: 22ca4b09462816f6c66fe07f8cf6ec7ec0800520a9d7c69381a03af80abe7c00b820328d7b0dabe4e390e9981a07c3199af8138a786735d7344d24575de0b64e
ssdeep: 98304:hDS0e237QZl5Lexzme+geMYOYD7h7IJo5xCBTEPQH7:fe2LQZNrMYRWOLYT0Qb
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F3F5338B8F28AEADCED91BB6D08BE4C8C14FD4C118AA5D84519A5F033D94564F23F53D
sha3_384: c3bb23b0a99163280aba38e4dd1ea5fa1853650aaf74186c48105298307762d8bd698c038d126549ddab0e1dd6305df6
ep_bytes: 6801509100e801000000c3c304acf64a
timestamp: 2021-12-27 18:00:18

Version Info:

0: [No Data]

Trojan.Win32.Injuke.fgus also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Injuke.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Siggen16.23700
MicroWorld-eScanTrojan.GenericKD.38411695
FireEyeGeneric.mg.bddc88de480d3be4
ALYacTrojan.GenericKD.38411695
CylanceUnsafe
SangforTrojan.Win32.Injuke.fgus
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Injuke.e67202a8
K7GWTrojan ( 0058c58d1 )
K7AntiVirusTrojan ( 0058c58d1 )
BitDefenderThetaGen:NN.ZexaF.34160.DRWaamtbkXgk
CyrenW32/Asprtct.EFFT-3356
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.Asprotect.LG
TrendMicro-HouseCallTROJ_GEN.R002C0WLT21
Paloaltogeneric.ml
ClamAVWin.Dropper.Asprotect-9919294-0
KasperskyTrojan.Win32.Injuke.fgus
BitDefenderTrojan.GenericKD.38411695
AvastWin32:Malware-gen
TencentWin32.Trojan.Injuke.Pkhg
Ad-AwareTrojan.GenericKD.38411695
EmsisoftTrojan.GenericKD.38411695 (B)
ComodoMalware@#3nhg2gxzustp9
TrendMicroTROJ_GEN.R002C0WLT21
McAfee-GW-EditionBehavesLike.Win32.Generic.wc
SophosMal/Generic-S
IkarusTrojan.Win32.ASProtect
GDataTrojan.GenericKD.38411695
JiangminTrojan.Injuke.nln
MaxSecureTrojan.Malware.127521822.susgen
AviraTR/Redcap.twsqr
Antiy-AVLTrojan/Generic.ASMalwS.34FE4F0
KingsoftWin32.Troj.Injuke.fg.(kcloud)
GridinsoftTrojan.Heur!.032120A1
ArcabitTrojan.Generic.D24A1DAF
ViRobotTrojan.Win32.Z.Agent.3620864.AJ
MicrosoftTrojan:MSIL/RedLineStealer.MAG!MTB
CynetMalicious (score: 100)
AhnLab-V3Malware/Win.Evo-gen.R461205
McAfeeGenericRXRG-FK!BDDC88DE480D
MAXmalware (ai score=83)
VBA32TrojanSpy.Stealer
MalwarebytesTrojan.MalPack
APEXMalicious
RisingTrojan.Injuke!8.10932 (CLOUD)
YandexTrojan.Asprotect!n1vDu9N82CM
SentinelOneStatic AI – Malicious PE
FortinetW32/ASPtotect.LA!tr
WebrootW32.Trojan.Gen
AVGWin32:Malware-gen
Cybereasonmalicious.418040
PandaTrj/Genetic.gen

How to remove Trojan.Win32.Injuke.fgus?

Trojan.Win32.Injuke.fgus removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment