Trojan.Injector.BZ

Trojan.Injector.BZ is a dangerous Trojan that modifies Windows registry to add an exception on Windows firewall that will allow it to communicate with a remote server. It also injects malicious code to a legitimate “svchost” file of Windows to initiate other functionalities. Trojan.Injector.BZ also steals sensitive information from an infected computer including user name, computer name, and operating system’s version. Using its own SMTP engine,  this Trojan will send gathered information to a list of email addresses.

This Trojan may also contact a remote computer to receive and execute commands. Additional malicious file can also be downloaded to an infected computer coming from a remote device. This added threat is typically a rootkit module that manages to hide presence of the Trojan and conceal every component on the infected system.

On some instances, detection of Trojan.Injector.BZ is a false security warning message originating from the rogue security application Antivirus GT. Fake warning like this one is displayed in the sole purpose of deceiving computer users by pretending that it originates from Windows. The alert contains an advice that the program it endorses must be purchase in order to clean the PC from identified threats. The full warning message will appears as:

AntivirusGT Resident Shield: Virus Detected
Warning! Active virus detected!
Threat Detected: Trojan.Injector.BZ
Infected File: C:\Windows\System32\rundll32.exe

How to Remove Trojan.Injector.BZ

Here is a simple step-by-step procedure to remove Trojan.Injector.BZ virus from an infected computer. Please follow the steps carefully.

1. Download removal software and save it on your Desktop or any accessible location of your hard drive.

2. After downloading, double-click on the file to install the application.

3. Follow the prompts and install the program using the “default” settings.

4. Before the installation completes, you need to update the database. - Update Malwarebytes’ Anti-Malware
- Launch Malwarebytes’ Anti-Malware

5. Click Finish. Program will run automatically and you will be prompt to update the program before starting a scan. Please proceed with update to obtain the latest database necessary to detect and remove Trojan.Injector.BZ.

6. Scan your computer thoroughly and completely check all files, folders and registry entries for possible infection.

7. When scanning is finished, click on Show Results.

8. Make sure that all detected threats are marked, click on Remove Selected.

9. After removing items associated with Trojan.Injector.BZ, it will prompt to restart the computer. Click Yes to complete the cleaning process.

10. When computer starts, open MalwareBytes Anti-Malware. Go to Quarantine tab and click on Delete All to fully remove all malicious items.

Note: Trojan.Injector.BZ may prevent mbam-setup.exe from downloading and running. You can download and rename this program from a different computer before running it on infected system.

What to do next...