Malware

How to remove “Win32/Injector.MH”?

Malware Removal

The Win32/Injector.MH is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.MH virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Win32/Injector.MH?


File Info:

name: C97F0C1975F344457EA3.mlw
path: /opt/CAPEv2/storage/binaries/9f963ed0ad1bbdffe8f1674259c82b6b1005a8d42ee3649f73b1daa05b1480c0
crc32: EBBBCF19
md5: c97f0c1975f344457ea3cb6bb4494c42
sha1: 44e500fbe834dbf735c154d7db0958f0a704a76a
sha256: 9f963ed0ad1bbdffe8f1674259c82b6b1005a8d42ee3649f73b1daa05b1480c0
sha512: 1e674e4e5cb22c947359089ebc4c0c413e78a923c51ff53c70dad53d11e2f86da3a7f4950f89ce2c4ed5c92dc192a3f1dbb2a3a8064571be5076ce55800921eb
ssdeep: 768:Y6M7N61v0Od6bEDAIz4PJgwdklkAJy8kAAeO+:Y6kOd6ADAI0PJgwdkTJy8kAAeO+
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F4F27223A75C8472F34986F2593AD3F9A92A7C3206149D0B368AFB681D756437CF131B
sha3_384: 290c32fdb37ca35403aec46491cb26fc184c03274d0a2b46121b123e4afceb0835624f6ef51246660102cdb65931b419
ep_bytes: 68fc164000e8eeffffff000000000000
timestamp: 2009-04-08 22:18:01

Version Info:

0: [No Data]

Win32/Injector.MH also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Agent.lvG0
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Barys.606
FireEyeGeneric.mg.c97f0c1975f34445
SkyhighBehavesLike.Win32.Generic.nt
McAfeeArtemis!C97F0C1975F3
Cylanceunsafe
ZillyaTrojan.Injector.Win32.257356
SangforSuspicious.Win32.Save.vb
K7AntiVirusTrojan ( 0055e3991 )
AlibabaTrojan:Win32/Injector.c8efe60a
K7GWTrojan ( 0055e3991 )
CrowdStrikewin/malicious_confidence_90% (W)
BitDefenderThetaAI:Packer.CB4CD35F1F
VirITTrojan.Win32.Generic.CCCS
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Injector.MH
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Barys.606
NANO-AntivirusTrojan.Win32.Agent.bflgk
AvastWin32:Evo-gen [Trj]
TencentWin32.Trojan.Generic.Unkl
EmsisoftGen:Variant.Barys.606 (B)
F-SecureTrojan.TR/Keylogger.owa.2
DrWebBackDoor.Bifrost.816
VIPREGen:Variant.Barys.606
TrendMicroTROJ_GEN.R002C0PB224
Trapminemalicious.high.ml.score
SophosMal/VB-TJ
IkarusBackdoor.Win32.Bifrose
JiangminTrojanDownloader.Agent.eiul
WebrootW32.Bumat.Gen
VaristW32/VBInject.CC.gen!Eldorado
AviraTR/Keylogger.owa.2
Antiy-AVLTrojan[Packed]/Win32.Klone
KingsoftWin32.Trojan.Generic.a
XcitiumTrojWare.Win32.Keylogger.owa_20@1mc7nd
ArcabitTrojan.Barys.606
ViRobotTrojan.Win32.Downloader.46085
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Barys.606
GoogleDetected
AhnLab-V3Malware/Gen.Generic.R527954
Acronissuspicious
VBA32Malware-Cryptor.VB.gen
ALYacGen:Variant.Barys.606
MAXmalware (ai score=99)
MalwarebytesGeneric.Malware.AI.DDS
PandaGeneric Malware
TrendMicro-HouseCallTROJ_GEN.R002C0PB224
RisingTrojan.VBInject!1.64B6 (CLASSIC)
YandexTrojan.GenAsa!7ZRzztonj/s
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.7164915.susgen
FortinetW32/Refroso.DZP!tr
AVGWin32:Evo-gen [Trj]
Cybereasonmalicious.be834d
DeepInstinctMALICIOUS

How to remove Win32/Injector.MH?

Win32/Injector.MH removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment