Home / malwarePDF  

VirTool:Win32/CeeInject


First posted on 15 February 2019.
Source: Microsoft

Aliases :

VirTool:Win32/CeeInject is also known as Win32/Injector.KAN trojan, Virus.Win32.CeeInject, Trojan.Win32.Miner.p, TROJ_INJECTR.VI.

Explanation :

This threat is a detection for certain forms of obfuscated malware. Malicious programs detected as VirTool:Win32/CeeInject are used by different malware families in the wild to protect them from detection or analysis.

One such sample of VirTool:Win32/CeeInject obfuscates a Bitcoin mining client, which may be installed on your PC to mine Bitcoins without your knowledge.

Analysis by Stefan Sellmer

Last update 15 February 2019

 

TOP