Malware

Win32/Injector.CECD removal

Malware Removal

The Win32/Injector.CECD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.CECD virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Win32/Injector.CECD?


File Info:

name: 3E5CA4513534FCF82AD3.mlw
path: /opt/CAPEv2/storage/binaries/0dbc281e4fc8b568cd5d5da40d2f2f5694a59f51aa07a6d29657ac5d393b2b1c
crc32: 91C2A529
md5: 3e5ca4513534fcf82ad39d1db6118a4e
sha1: f114cb95064a67e34a6b9419da798c195640e77a
sha256: 0dbc281e4fc8b568cd5d5da40d2f2f5694a59f51aa07a6d29657ac5d393b2b1c
sha512: 4cfd23ddd63753cbe4f558d35bd9df711815f1b55e0a33b7358f2eb97094d4b028ac8eef4bf5eb97b64a840ccfc9853b07241a8175da1ce87cafa25a3a804c37
ssdeep: 1536:ToLv102QiP5tqFSOHn4v4WtDiButxpU8pe5loYYX8Abt7ZU3Wer:E1EsOilGBGNSYXPZUGO
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18B35931A7394E0BAD1734875CC52A6BF8099AC344D95188FE311772E3DF2BA3E761127
sha3_384: b44ea9315cf566f8ad11a1ec14c8c5cb6ae5b35a6c8332e2158219b21ef1c5de1829dc99f81269f64524441f57321d8d
ep_bytes: 6818e94e00e8f0ffffff000040000000
timestamp: 2022-06-09 16:35:56

Version Info:

Translation: 0x0409 0x04b0
CompanyName: KAWAY
ProductName: £ä_¾™×ä
FileVersion: 1.00
ProductVersion: 1.00
InternalName: £ä_¾™×ä
OriginalFilename: £ä_¾™×ä.exe

Win32/Injector.CECD also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Lazy.196746
FireEyeGeneric.mg.3e5ca4513534fcf8
McAfeeGenericRXTI-PO!3E5CA4513534
CylanceUnsafe
VIPREGen:Variant.Lazy.196746
Sangfor[MICROSOFT VISUAL BASIC V6.0]
K7AntiVirusTrojan ( 004c78141 )
K7GWTrojan ( 004c78141 )
Cybereasonmalicious.5064a6
ESET-NOD32a variant of Win32/Injector.CECD
APEXMalicious
ClamAVWin.Trojan.Ratx-9952190-0
KasperskyVHO:Trojan-Ransom.Win32.Convagent.gen
BitDefenderGen:Variant.Lazy.196746
NANO-AntivirusTrojan.Win32.Bladabindi.jpqftj
AvastWin32:RATX-gen [Trj]
TencentMalware.Win32.Gencirc.11fa2671
Ad-AwareGen:Variant.Lazy.196746
SophosGeneric ML PUA (PUA)
DrWebBackDoor.Bladabindi.13678
ZillyaTrojan.Injector.Win32.1539808
McAfee-GW-EditionGenericRXTI-PO!3E5CA4513534
Trapminemalicious.moderate.ml.score
EmsisoftGen:Variant.Lazy.196746 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Convagent.agh
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Generic.ASMalwS.3D8
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Lazy.D3008A
GDataGen:Variant.Lazy.196746
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.R498808
BitDefenderThetaGen:NN.ZevbaF.34786.bn0@ae2hFJji
ALYacGen:Variant.Lazy.196746
MAXmalware (ai score=80)
MalwarebytesMalware.AI.3910226547
RisingTrojan.Injector!8.C4 (TFE:dGZlOgW84y+Ro2HsEw)
FortinetW32/Injector.DZLM!tr
AVGWin32:RATX-gen [Trj]
CrowdStrikewin/malicious_confidence_70% (D)

How to remove Win32/Injector.CECD?

Win32/Injector.CECD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment