Malware

NSIS/Injector.EV malicious file

Malware Removal

The NSIS/Injector.EV is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What NSIS/Injector.EV virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • Anomalous binary characteristics

Related domains:

custom.generatione.tech

How to determine NSIS/Injector.EV?


File Info:

crc32: 1B0DDF8F
md5: b45ada13d3d2a02098b2aa4d10981e72
name: B45ADA13D3D2A02098B2AA4D10981E72.mlw
sha1: d727462c3166f254cadf71fbf3e2903629953b95
sha256: 937af15602ee81b4a99c559ecb0616226b506983cb5b1947aeff862aec447b2a
sha512: 90ad33053875cc0932cf70b6602a2355071fd6109506b81584d504560a93da28c8db59024194a534ed6c0c07e2369ef846ffc3c83be0503c8180ab15f17613d6
ssdeep: 6144:6qaFH+93lFzaa30O9N8f/pVeDxb+1Kfry:S5elFzl0Ob0SlbiKO
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

NSIS/Injector.EV also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanTrojan.NSIS.Androm.6
CAT-QuickHealRansom.Locky.A
Qihoo-360Win32/Ransom.Shade.HyoDRBYA
McAfeeArtemis!B45ADA13D3D2
MalwarebytesGeneric.Malware/Suspicious
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Shade.j!c
SangforBackdoor.Win32.NetWiredRC.C
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaRansom:Win32/Shade.0bcee1d1
K7GWTrojan ( 0055e4081 )
K7AntiVirusTrojan ( 0055e4081 )
ArcabitTrojan.NSIS.Androm.6
SymantecPacked.NSISPacker!g3
ESET-NOD32NSIS/Injector.EV
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Shade.yn
BitDefenderTrojan.NSIS.Androm.6
NANO-AntivirusTrojan.Dos.Code.egouyv
TencentWin32.Trojan.Shade.Pdvu
SophosMal/Generic-S
ComodoMalware@#gu1ydafgc6ad
F-SecureHeuristic.HEUR/AGEN.1118010
TrendMicroRansom_LOCKYENC.SMNS1
McAfee-GW-EditionBehavesLike.Win32.ICLoader.dc
FireEyeGeneric.mg.b45ada13d3d2a020
EmsisoftTrojan.NSIS.Androm.6 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1118010
MAXmalware (ai score=98)
GridinsoftRansom.Win32.AI.sa
MicrosoftBackdoor:Win32/NetWiredRC.C
AhnLab-V3Trojan/Win32.Miuref.R187782
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.NSIS.Androm.6
CynetMalicious (score: 90)
VBA32TrojanRansom.Shade
CylanceUnsafe
PandaTrj/CI.A
TrendMicro-HouseCallRansom_LOCKYENC.SMNS1
IkarusTrojan.NSIS.Injector
AVGWin32:Malware-gen
Cybereasonmalicious.3d3d2a
Paloaltogeneric.ml

How to remove NSIS/Injector.EV?

NSIS/Injector.EV removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment