Threat Database Viruses Virus.CeeInject.gen!JG

Virus.CeeInject.gen!JG

By CagedTech in Viruses

Threat Scorecard

Popularity Rank: 13,726
Threat Level: 10 % (Normal)
Infected Computers: 894
First Seen: April 22, 2013
Last Seen: October 3, 2025
OS(es) Affected: Windows

Aliases

10 security vendors flagged this file as malicious.

Antivirus Vendor Detection
Panda Trj/Genetic.gen
AVG Dropper.Generic8.IRD
Fortinet W32/Injector.ZVR!tr
Ikarus Virus.Win32.CeeInject
AhnLab-V3 Trojan/Win32.Yakes
Microsoft VirTool:Win32/CeeInject.gen!JG
AntiVir TR/Matsnu.EB.137
Sophos Mal/EncPk-AGD
Kaspersky Trojan-Downloader.Win32.Dapato.pvz
McAfee Ransom-FBLS!714C043F59E1

SpyHunter Detects & Remove Virus.CeeInject.gen!JG

File System Details

Virus.CeeInject.gen!JG may create the following file(s):
# File Name MD5 Detections
1. DisplaySwitch.exe 714c043f59e110f7809481534864d836 6

Analysis Report

General information

Family Name: PUP.DllInject.B
Signature status: Root Not Trusted

Known Samples

MD5: fa83b87c7b79f90598cb830371a5acdb
SHA1: c9b139bdc995dede89ce5a8cf945f71281b18d0a
SHA256: 4DBD7F701ADAD99316FF76DF12C6645E6025C217BCB14CD5A1A62571D902D5E4
File Size: 2.08 MB, 2081576 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File has exports table
  • File has TLS information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Company Name TODO: <公司名>
File Description TODO: <文件说明>
File Version 2025,08,21,1
Internal Name 5866_CF_Helper.exe
Legal Copyright Copyright (C) 2020
Original Filename SH_QQ_Bi.exe
Product Name TODO: <产品名>
Product Version 2023.1.18.1

Digital Signatures

Signer Root Status
Hangzhou Shunwang Technology Co.,Ltd DigiCert Trusted Root G4 Root Not Trusted
Hangzhou Shunwang Technology Co.,Ltd DigiCert Trusted Root G4 Root Not Trusted

File Traits

  • Default Version Info
  • HighEntropy
  • WriteProcessMemory
  • x86

Block Information

Total Blocks: 7,025
Potentially Malicious Blocks: 410
Whitelisted Blocks: 6,178
Unknown Blocks: 437

Visual Map

0 0 0 0 0 ? 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 ? 0 0 ? ? ? ? ? ? ? 0 0 0 0 0 0 ? 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 ? ? 0 0 0 ? ? ? ? ? ? 0 0 ? ? ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 ? ? 0 ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? 0 ? ? ? 0 ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? ? 0 ? ? 0 0 ? 0 ? ? 0 0 0 ? 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? ? ? ? ? 0 0 ? ? ? 0 ? ? 0 ? ? ? ? ? ? ? 0 ? 0 ? ? ? ? ? 0 x ? ? ? ? ? 0 ? 0 ? ? ? ? ? ? ? ? 0 ? ? ? 0 ? 0 0 ? ? ? ? ? ? ? 0 0 ? 0 0 ? ? 0 0 0 0 0 0 0 0 ? 0 0 0 0 ? 0 0 0 0 ? ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 ? ? ? 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 ? 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 ? x 0 0 0 0 0 ? 0 0 ? ? 0 0 0 0 ? 0 0 0 0 0 0 0 ? 0 0 0 ? 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 ? 0 0 0 0 ? ? ? ? ? ? ? ? ? ? ? 0 ? 0 0 0 ? ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 ? ? ? ? 0 0 0 0 0 ? 0 ? 0 ? ? 0 ? 0 ? 0 ? ? 0 ? ? ? ? ? ? ? 0 ? ? ? 0 ? ? ? 0 0 0 0 0 0 0 0 0 0 0 0 0 x ? ? 0 0 0 0 0 0 ? 0 0 0 0 x 0 0 0 0 0 0 0 0 x 0 ? x 0 0 0 x x x 0 0 ? 0 ? ? 0 ? 0 0 0 0 0 x x 0 ? x x 0 0 0 x ? ? ? ? 0 x 0 0 0 0 0 ? x 0 ? x ? ? ? 0 0 0 0 0 0 x 0 0 0 ? x ? 0 0 ? ? ? 0 ? ? ? x 0 ? 0 0 x ? ? ? ? 0 0 0 0 0 x x x x 0 x x x 0 x ? ? ? ? 0 x 0 x 0 x x ? 0 ? ? 0 ? x 0 0 x x 0 ? 0 ? ? 0 x 0 ? ? 0 0 x 0 0 x ? 0 x x 0 0 x ? 0 x x 0 0 ? 0 0 x ? 0 ? x x ? ? ? 0 x 0 0 0 0 x ? x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 x ? ? ? x ? x 0 0 0 ? 0 0 0 ? ? ? 0 ? ? 0 ? ? ? x ? ? ? ? ? ? ? 0 ? 0 ? ? 0 ? 0 0 ? ? ? x 0 0 0 0 0 0 0 ? 0 0 0 0 x x x x x x x ? x x 0 x 0 x ? x ? x x x x x 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x x 0 x 0 x x x 0 0 x 0 x 0 x 0 ? x 0 0 0 x x 0 0 0 x 0 0 0 x 0 0 0 0 ? 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? ? 0 0 0 0 0 x x ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 x 0 0 0 x 0 0 ? x x ? x x 0 0 x 0 x x 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 2 3 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 ? 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0
... Data truncated
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Windows API Usage

Category API
Network Wininet
  • InternetOpen

Trending

Most Viewed

Loading...