Malware

VirTool:Win32/CeeInject.ADL!bit removal instruction

Malware Removal

The VirTool:Win32/CeeInject.ADL!bit is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What VirTool:Win32/CeeInject.ADL!bit virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine VirTool:Win32/CeeInject.ADL!bit?


File Info:

crc32: C2EF4995
md5: fb0504073cdf23c33ace0a1e3a368361
name: FB0504073CDF23C33ACE0A1E3A368361.mlw
sha1: df25d441fb921eeae1756c737d2e753d9df51170
sha256: fe90aea32a72020906571845bd524f161228f5387a7334093a3260cd215ffda8
sha512: 168cdd6219bd6f29ac24e07c3ff6ef83cfb61712c64498bd65a499d63018fedb7cff01051eef91e34f679a1611cba4212a91edac7a2c7ab3c52681d27e765039
ssdeep: 3072:x4XxkrMuWGq9GVeAHjHKq+iKydEQ+RVluvSA9eX9OWz0cAKmODJ/nGLE+T+ykkgA:W+r7VEGDdhlqVygXwvHKxDJ/GY+Tc6t
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2017, otyvuzmid
InternalName: toalatspring.exe
FileVersion: 5.1
ProductVersion: 5.1.111.0
Translation: 0x0789 0x04b1

VirTool:Win32/CeeInject.ADL!bit also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.24384
MicroWorld-eScanTrojan.Ransom.GandCrab.Gen.2
FireEyeGeneric.mg.fb0504073cdf23c3
CAT-QuickHealTrojan.Mauvaise.SL1
McAfeeTrojan-FPQB!FB0504073CDF
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforWin.Packed.Gandcrab-6520432-4
K7AntiVirusTrojan ( 0053305e1 )
BitDefenderTrojan.Ransom.GandCrab.Gen.2
K7GWTrojan ( 0053305e1 )
Cybereasonmalicious.73cdf2
BitDefenderThetaGen:NN.ZexaF.34590.pu1@aCwK!Doi
CyrenW32/S-2dbfb35e!Eldorado
SymantecRansom.GandCrab
APEXMalicious
AvastFileRepMalware
ClamAVWin.Dropper.Gandcrab-6535271-0
KasperskyHEUR:Trojan.Win32.Generic
AlibabaVirTool:Win32/CeeInject.dafd04e7
NANO-AntivirusTrojan.Win32.Encoder.fbjtev
ViRobotTrojan.Win32.GandCrab.Gen.A
RisingRansom.GandCrypt!8.F33E (C64:YzY0Otut9A5DDpuP)
Ad-AwareTrojan.Ransom.GandCrab.Gen.2
TACHYONRansom/W32.GandCrab
EmsisoftTrojan.Ransom.GandCrab.Gen.2 (B)
ComodoTrojWare.Win32.Chapak.GB@7n77xn
F-SecureHeuristic.HEUR/AGEN.1106533
ZillyaTrojan.GandCrypt.Win32.173
TrendMicroRansom_GANDCRAB.THEAAAH
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
SophosMal/Generic-R + Mal/Agent-AUL
IkarusTrojan-Ransom.GandCrab
JiangminTrojan.GandCrypt.bz
MaxSecureRansomeware.GandCrypt.Gen
AviraHEUR/AGEN.1106533
Antiy-AVLTrojan[Ransom]/Win32.GandCrypt
MicrosoftVirTool:Win32/CeeInject.ADL!bit
ArcabitTrojan.Ransom.GandCrab.Gen.2
SUPERAntiSpywareTrojan.Agent/Gen-Malagent
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.Ransom.GandCrab.Gen.2
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Gandcrab.Exp
Acronissuspicious
VBA32BScope.Trojan.Encoder
ALYacTrojan.Ransom.GandCrab.Gen.2
MAXmalware (ai score=99)
MalwarebytesTrojan.MalPack.Generic
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/Kryptik.GGOU
TrendMicro-HouseCallRansom_GANDCRAB.THEAAAH
TencentMalware.Win32.Gencirc.10b3d0ed
YandexTrojan.GandCrypt!M2wlV4tbQTQ
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/GenKryptik.DQHN!tr
AVGFileRepMalware
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360Trojan.Generic

How to remove VirTool:Win32/CeeInject.ADL!bit?

VirTool:Win32/CeeInject.ADL!bit removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment