Malware

VirTool:Win32/Injeber removal guide

Malware Removal

The VirTool:Win32/Injeber is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What VirTool:Win32/Injeber virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Unconventionial language used in binary resources: Serbian (Cyrillic)
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine VirTool:Win32/Injeber?


File Info:

name: B37F5BE1EABA617DCEC2.mlw
path: /opt/CAPEv2/storage/binaries/f248f252c00848eebdb51203864cb576f041226cc5c12cdfb626556e562409c9
crc32: C84EB7AB
md5: b37f5be1eaba617dcec2bd438923fcbb
sha1: af5fd22574b15c0528985f10fe3b3665d5a9b6c1
sha256: f248f252c00848eebdb51203864cb576f041226cc5c12cdfb626556e562409c9
sha512: 3220b65142b84ef513b6c5b2a24b98b3aa671113b1b0ffdc95a3ff32c9679ddd562c1a405ef5423cd0ec55633eb3e8807550e20952d565dc2098475ed2722a5e
ssdeep: 1536:+hUDofByDJWbMGcJFLPEPKOJUsy1+VMA:+IofBHbKjP0PvMA
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12B74D6786ADCE237D930D0B2DFA059A5F4A0E97A38019815E5834B269637983F1E533F
sha3_384: 187afc6065a5f7597cee4750bbd5ebc17314baad3e21c3003c556816294dfff689ba1841e4fc571fdd75109863ce3ed4
ep_bytes: 6828154000e8eeffffff000000000000
timestamp: 2012-06-06 07:17:45

Version Info:

Translation: 0x0409 0x04b0
Comments: Burle astri anno
CompanyName: nausee cicca
FileDescription: Scotto annoia gl aggira
LegalCopyright: menati palpi basava
LegalTrademarks: notare bulbo
ProductName: tozze
FileVersion: 4.05.0003
ProductVersion: 4.05.0003
InternalName: giunga
OriginalFilename: giunga.exe

VirTool:Win32/Injeber also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Symmi.2521
FireEyeGeneric.mg.b37f5be1eaba617d
CAT-QuickHealTrojan.VBInject.S23109
McAfeePWS-Zbot.gen.aej
CylanceUnsafe
ZillyaTrojan.VBKrypt.Win32.175528
SangforSuspicious.Win32.Save.vb
K7AntiVirusTrojan ( 0040df0e1 )
K7GWTrojan ( 0040df0e1 )
CrowdStrikewin/malicious_confidence_70% (D)
BaiduWin32.Trojan.Injector.jp
VirITTrojan.Win32.VBGenus.DDY
CyrenW32/VBKrypt.BFV.gen!Eldorado
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32Win32/VB.QMS
APEXMalicious
ClamAVWin.Trojan.Generic-6260330-0
KasperskyBackdoor.Win32.Androm.qmbe
BitDefenderGen:Variant.Symmi.2521
NANO-AntivirusTrojan.Win32.NgrBot.eiazin
SUPERAntiSpywareTrojan.Agent/Gen-Dropper
AvastWin32:PUP-gen [PUP]
RisingTrojan.Injector!1.A763 (CLASSIC)
Ad-AwareGen:Variant.Symmi.2521
EmsisoftGen:Variant.Symmi.2521 (B)
DrWebBackDoor.IRC.NgrBot.41
VIPREGen:Variant.Symmi.2521
McAfee-GW-EditionPWS-Zbot.gen.aej
Trapminemalicious.moderate.ml.score
SophosML/PE-A + Mal/Behav-405
IkarusTrojan.Win32.VBKrypt
GDataGen:Variant.Symmi.2521
JiangminTrojan/VBKrypt.hfvr
GoogleDetected
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Generic.ASMalwS.39
ArcabitTrojan.Symmi.D9D9
ViRobotTrojan.Win32.A.VBKrypt.90112.QX
MicrosoftVirTool:Win32/Injeber
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.VBKrypt.C161437
Acronissuspicious
ALYacGen:Variant.Symmi.2521
MAXmalware (ai score=86)
VBA32TScope.Trojan.VB
MalwarebytesMalware.AI.280429565
TencentBackdoor.Win32.Androm.xc
YandexTrojan.GenAsa!vB4eeH1VqAg
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/VBKrypt.MBSX!tr
BitDefenderThetaGen:NN.ZevbaF.34646.vm0@ae4eAGlG
AVGWin32:PUP-gen [PUP]
Cybereasonmalicious.1eaba6

How to remove VirTool:Win32/Injeber?

VirTool:Win32/Injeber removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment