Malware

Win32/Injector.AABE (file analysis)

Malware Removal

The Win32/Injector.AABE is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.AABE virus can do?

  • Executable code extraction
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/Injector.AABE?


File Info:

crc32: A6A3CEE6
md5: e0e8720e13ef5dc60b071dbeccda609c
name: E0E8720E13EF5DC60B071DBECCDA609C.mlw
sha1: 2a78a30d01c983a645b2b61d98d85accf983e672
sha256: 80cd7850dcd037595e994f7f29b51dc0079c62ef2fba19bc6d326daf490dcf67
sha512: 3f1d1f763130f131bc47ccb94aa67f633f08abab402c423200f6f5164cb604b450da87a5bb25817e57e235d2be37423d379489ba94c6b2486df1348134ee2695
ssdeep: 384:jnqX78T3miMtMPiUHAUoU++/7GwwIp4NfS4JoyKkg6e1AnrxwZxw:jnqS3misMPZHViwwIWpu9kgzWnW8
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: stub
FileVersion: 1.00
CompanyName: swordfish_
ProductName: Project1
ProductVersion: 1.00
OriginalFilename: stub.exe

Win32/Injector.AABE also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005267a01 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Johnnie.336223
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 005267a01 )
Cybereasonmalicious.d01c98
CyrenW32/Trojan.ZLPO-5850
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.AABE
APEXMalicious
AvastWin32:Trojan-gen
KasperskyTrojan.Win32.VBKrypt.aanal
BitDefenderGen:Variant.Johnnie.336223
MicroWorld-eScanGen:Variant.Johnnie.336223
TencentWin32.Trojan.Dropper.Akou
Ad-AwareGen:Variant.Johnnie.336223
ComodoTrojWare.Win32.Inject.ALCI@53390z
BitDefenderThetaAI:Packer.94DD3FB120
TrendMicroTROJ_GEN.R005C0DFJ21
McAfee-GW-EditionPWS-Zbot-FAJW!E0E8720E13EF
FireEyeGeneric.mg.e0e8720e13ef5dc6
EmsisoftGen:Variant.Johnnie.336223 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.Gen
eGambitUnsafe.AI_Score_98%
MicrosoftVirTool:Win32/VBInject.gen!JD
ArcabitTrojan.Johnnie.D5215F
AegisLabTrojan.Win32.SelfDel.lXfZ
GDataGen:Variant.Johnnie.336223
AhnLab-V3Trojan/Win.Agent.C4530936
McAfeePWS-Zbot-FAJW!E0E8720E13EF
MAXmalware (ai score=83)
VBA32Malware-Cryptor.VB.gen.1
MalwarebytesMalware.AI.1958763774
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R005C0DFJ21
RisingTrojan.Injector!1.D63C (CLASSIC)
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Injector.YUP!tr
AVGWin32:Trojan-gen

How to remove Win32/Injector.AABE?

Win32/Injector.AABE removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment