Trojan

Trojan.Win32.Injuke.nnw removal

Malware Removal

The Trojan.Win32.Injuke.nnw is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Injuke.nnw virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • A process created a hidden window
  • Unconventionial language used in binary resources: Danish
  • The binary likely contains encrypted or compressed data.
  • A scripting utility was executed
  • Executed a process and injected code into it, probably while unpacking
  • Attempts to stop active services
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Win32.Injuke.nnw?


File Info:

crc32: A340FD86
md5: 235aca95cb53bb7c6a450f9bf91ea278
name: 235ACA95CB53BB7C6A450F9BF91EA278.mlw
sha1: eedd5cc65d341c5b69df5bc63e21c7f1aeec81c5
sha256: 59f83a8551aa22332fabf2471ddb054e30bacc72204d2389d77afc7f8aab610a
sha512: 540333f76b829462a81b4c33d2a628ba5ffdd7b731c2683726403bfcaddd908b873d362552629ea706253c3f38e73c43ecd226c5344e3af7aa1e07731626428a
ssdeep: 6144:r4FL4GLtnuzq7v0FNaGejm6r6aofHOMDv0YAefDCKmjS:mMGL4+AaGQwaof7Dv0/EDE
type: PE32 executable (GUI) Intel 80386 system file, for MS Windows

Version Info:

0: [No Data]

Trojan.Win32.Injuke.nnw also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005686901 )
LionicTrojan.Win32.Malicious.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.31319
ALYacTrojan.Ransom.Sodinokibi
MalwarebytesSpyware.RaccoonStealer
ZillyaTrojan.Kryptik.Win32.1970776
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanPSW:Win32/Injuke.a30b1cd3
K7GWTrojan ( 005686901 )
Cybereasonmalicious.5cb53b
CyrenW32/Kryptik.BJG.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.HCBL
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Injuke.nnw
BitDefenderGen:Heur.Mint.Titirez.tGW@I4PuggfG
NANO-AntivirusTrojan.Win32.Encoder.hhnpxg
MicroWorld-eScanGen:Heur.Mint.Titirez.tGW@I4PuggfG
TencentWin32.Trojan.Generic.Hoyk
Ad-AwareGen:Heur.Mint.Titirez.tGW@I4PuggfG
SophosMal/Generic-R + Mal/RyPack-A
BitDefenderThetaGen:NN.ZexaF.34236.tGW@a4PuggfG
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.fh
FireEyeGeneric.mg.235aca95cb53bb7c
EmsisoftGen:Heur.Mint.Titirez.tGW@I4PuggfG (B)
JiangminTrojan.Chapak.jdh
AviraHEUR/AGEN.1133046
eGambitUnsafe.AI_Score_70%
Antiy-AVLTrojan/Generic.ASMalwS.3020CB5
MicrosoftPWS:Win32/Predator.KM!MTB
ArcabitTrojan.Mint.Titirez.E400FF
SUPERAntiSpywareRansom.GandCrab/Variant
GDataGen:Heur.Mint.Titirez.tGW@I4PuggfG
AhnLab-V3Trojan/Win.MalPe.X2062
Acronissuspicious
McAfeeGenericRXKD-VT!235ACA95CB53
MAXmalware (ai score=81)
VBA32BScope.Trojan.AET.281105
PandaTrj/GdSda.A
RisingTrojan.Kryptik!1.C45C (CLASSIC)
YandexTrojan.GenAsa!8s8s77ZiokE
SentinelOneStatic AI – Malicious PE
FortinetW32/CoinMiner.HPDF!tr
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml

How to remove Trojan.Win32.Injuke.nnw?

Trojan.Win32.Injuke.nnw removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment