Trojan

Trojan:Win32/Inject.AL removal

Malware Removal

The Trojan:Win32/Inject.AL is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Inject.AL virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Behavioural detection: Injection (inter-process)
  • CAPE detected the embedded win api malware family
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Trojan:Win32/Inject.AL?


File Info:

name: BF6E8EAA5FB7AF1248B0.mlw
path: /opt/CAPEv2/storage/binaries/7f176f6cf35048d35d734c37459c72951982d924d69c7d224ba0722fa154088b
crc32: E55EFF8D
md5: bf6e8eaa5fb7af1248b085e48a5eafe6
sha1: fe947c8d3af9620cb6efbe38c1ca50904a36b6b2
sha256: 7f176f6cf35048d35d734c37459c72951982d924d69c7d224ba0722fa154088b
sha512: 338e984792ab745bc6cf994a74c4ffa680435e9cdafc967a62253d68743026f5e306f5a465331ab29531ca7d8478d5614107afae7a0c80ea1eebabc69b69fb45
ssdeep: 1536:Ok2Q13fi4hq5kP9gIdWWQ1BQtgBkDCbmhfrL9DOq3qs74l6dR:7X1vqCP9VwV1kFhX9ScLUY
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1D04301BF47C9ADE2F4640074CA907D1A1ABD4908B57C8533AE4BC1CECFAD9E1E424656
sha3_384: dd881fba91c13dd8b084eaea432803f1ca6e916e4cfd4c04965802e1f97edf2b76b0ae237ab667a1ad2a0c17ff8470b8
ep_bytes: 558bec83ec1c837d0c015356570f855b
timestamp: 2011-11-25 21:30:19

Version Info:

0: [No Data]

Trojan:Win32/Inject.AL also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.lteu
AVGWin32:Crypt-LBA [Trj]
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.78599
CAT-QuickHealTrojan.Vasnasea.A4
SkyhighBehavesLike.Win32.Generic.qc
McAfeeBackDoor-FDQ
Cylanceunsafe
ZillyaTrojan.Agent.Win32.189340
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Inject.8a99d309
K7GWTrojan ( 002ad7071 )
K7AntiVirusTrojan ( 002ad7071 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent.TCI
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Trojan.Buzy-10020161-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Razy.78599
NANO-AntivirusTrojan.Win32.Crypted.jxpzr
AvastWin32:Crypt-LBA [Trj]
TencentWin32.Trojan.Generic.Cujl
EmsisoftGen:Variant.Razy.78599 (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.Siggen3.51776
VIPREGen:Variant.Razy.78599
TrendMicroTROJ_GEN.R002C0DB624
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.bf6e8eaa5fb7af12
SophosMal/Behav-010
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Generic.tuoj
VaristW32/Agent.MO.gen!Eldorado
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Win32.AGeneric
KingsoftWin32.Trojan.Generic.a
MicrosoftTrojan:Win32/Inject.AL
XcitiumTrojWare.Win32.Agent.TCI@4ldwla
ArcabitTrojan.Razy.D13307
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Razy.78599
GoogleDetected
AhnLab-V3Trojan/Win32.Cosmu.R18389
BitDefenderThetaGen:NN.ZedlaF.36802.dq4@a0MWlem
ALYacGen:Variant.Razy.78599
MAXmalware (ai score=100)
VBA32SScope.Trojan.Agent.340A
MalwarebytesMalware.AI.3781625139
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DB624
RisingTrojan.Win32.Fednu.tvq (CLASSIC)
IkarusVirus.Win32.Vundo
MaxSecureTrojan.Malware.2588.susgen
FortinetW32/Agent.TCI!tr
DeepInstinctMALICIOUS
alibabacloudBackdoor

How to remove Trojan:Win32/Inject.AL?

Trojan:Win32/Inject.AL removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment