Trojan

Trojan.Win32.Injuke.hbgm removal tips

Malware Removal

The Trojan.Win32.Injuke.hbgm is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Injuke.hbgm virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Unconventionial binary language: Russian
  • Unconventionial language used in binary resources: Russian
  • The binary contains an unknown PE section name indicative of packing
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Collects information to fingerprint the system
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.Win32.Injuke.hbgm?


File Info:

name: A7AACA7CCDC90E85B3B5.mlw
path: /opt/CAPEv2/storage/binaries/a7b53596b61a9f7c1069a4d7f500b064f792a433cb1cee123abbb692b9ba38f1
crc32: 6F86AD69
md5: a7aaca7ccdc90e85b3b532ada741d057
sha1: 62d39d6e5b1e588fda3e3313c034f8c69a3ca783
sha256: a7b53596b61a9f7c1069a4d7f500b064f792a433cb1cee123abbb692b9ba38f1
sha512: 6398dcac68a8dbc0425be8de9f2afe034dda9b51e57c3bbfe3c55370f351065b47c93bb375591d5776be88fc31b26c0ca7be3b51136770d83db4aae75518013d
ssdeep: 3072:H4mIWgTsDAJJRjOV2/pwb5ryT5tlDhB2IFTLFZhh2D+0caj3kyRACEKZwRKpN:H4mI3JJF35tlDhB2Cn9ozESwRKpN
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15584AC97D80F0B15EC5F9EBB45A6E03A144C67AD17530F9FC6C8CE8AEA13CB08616671
sha3_384: b87c1aba55a8f76004d7fe0715defd22523fb5dbc0abdab9cd047091c891fa43239ecef10c268016f54a39fbb513cdfc
ep_bytes: 558bec51550535dc07000535dc070005
timestamp: 2013-04-03 09:00:51

Version Info:

CompanyName: Корпорация Майкрософт
FileDescription: Редактор личных символов
Translation: 0x0419 0x04b0

Trojan.Win32.Injuke.hbgm also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.GenericKDZ.95591
FireEyeGeneric.mg.a7aaca7ccdc90e85
ALYacTrojan.GenericKDZ.95591
MalwarebytesCrypt.Trojan.Malicious.DDS
VIPRETrojan.GenericKDZ.95591
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 004bcce41 )
AlibabaTrojan:Win32/Kryptik.e123
K7GWTrojan ( 004bcce41 )
CrowdStrikewin/malicious_confidence_100% (W)
BaiduWin32.Trojan.Agent.eq
CyrenW32/Zbot.JC.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
ESET-NOD32Win32/Agent.UNQ
APEXMalicious
ClamAVWin.Packed.Zbot-7109053-0
KasperskyTrojan.Win32.Injuke.hbgm
BitDefenderTrojan.GenericKDZ.95591
NANO-AntivirusTrojan.Win32.ShipUp.bqoajw
AvastWin32:Gepys-E [Trj]
TencentTrojan.Win32.Kryptik.16000652
EmsisoftTrojan.GenericKDZ.95591 (B)
F-SecureHeuristic.HEUR/AGEN.1313986
DrWebTrojan.Redirect.140
TrendMicroTROJ_GEN.R002C0DEQ23
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.ft
Trapminemalicious.high.ml.score
SophosTroj/Gyepis-A
IkarusTrojan-Dropper.Win32.Gepys
JiangminTrojan/ShipUp.jb
GoogleDetected
AviraHEUR/AGEN.1313986
Antiy-AVLTrojan/Win32.SGeneric
XcitiumTrojWare.Win32.Kryptik.AYQE@4wlbfl
ArcabitTrojan.Generic.D17567
ViRobotTrojan.Win.Z.Agent.395776.BE
ZoneAlarmUDS:Trojan.Win32.Injuke.hbgm
GDataWin32.Trojan.Gepys.RH99RF
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.R273781
McAfeePWS-Zbot-FATG!A7AACA7CCDC9
MAXmalware (ai score=85)
VBA32BScope.Trojan.Redirect
Cylanceunsafe
PandaTrj/Hexas.HEU
TrendMicro-HouseCallTROJ_GEN.R002C0DEQ23
RisingTrojan.Kryptik!1.AB8B (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Kryptik.AXXI!tr
BitDefenderThetaGen:NN.ZexaF.36196.yq0@a05XlKfc
AVGWin32:Gepys-E [Trj]
Cybereasonmalicious.ccdc90
DeepInstinctMALICIOUS

How to remove Trojan.Win32.Injuke.hbgm?

Trojan.Win32.Injuke.hbgm removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment