Malware

Win32/Injector.EEOZ information

Malware Removal

The Win32/Injector.EEOZ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.EEOZ virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (1 unique times)
  • Drops a binary and executes it
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Creates a copy of itself

How to determine Win32/Injector.EEOZ?


File Info:

crc32: 54B78EA7
md5: 11c766ecffd7fae8460c5b34bf70e0be
name: 11C766ECFFD7FAE8460C5B34BF70E0BE.mlw
sha1: 9f7d4f32eb7523cdf356e05df379925d6f711675
sha256: 14f02b4f820e84b97e10e17aeb37276127e9f38388f3bdd1dbea17465c66081b
sha512: 1000572518e446f6133bf454bda11e60089218205837d858d8ff1506b08684a89efd54550ab6de1c395f3972508ebe67c3aa5aded0b771b09a0fed5daf2e29f3
ssdeep: 3072:DErVRw6HYXAGzQX8wSvPpDg+Gpv+AXiI7tCJoQWbLbRCMgwtlzbEh9+pjXjBlmC:DEh2/AGzBvy+GpiM1Ez+pDjeb5c
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (C) 2000
InternalName: PropListBox
FileVersion: 1, 0, 0, 1
CompanyName:
LegalTrademarks:
ProductName: PropListBox Application
ProductVersion: 1, 0, 0, 1
FileDescription: PropListBox MFC Application
OriginalFilename: PropListBox.EXE
Translation: 0x0409 0x04b0

Win32/Injector.EEOZ also known as:

K7AntiVirusTrojan ( 00547e071 )
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader21.62782
ClamAVWin.Trojan.Gh0stRAT-7003344-1
CylanceUnsafe
ZillyaTrojan.Farfli.Win32.31927
K7GWTrojan ( 00547e071 )
Cybereasonmalicious.cffd7f
CyrenW32/Farfli.JAQA-3961
ESET-NOD32a variant of Win32/Injector.EEOZ
ZonerTrojan.Win32.79625
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyBackdoor.Win32.Farfli.beoo
BitDefenderGen:Heur.Mint.Zard.30
NANO-AntivirusTrojan.Win32.Farfli.fitqjm
MicroWorld-eScanGen:Heur.Mint.Zard.30
TencentMalware.Win32.Gencirc.10b45215
Ad-AwareGen:Heur.Mint.Zard.30
SophosML/PE-A
BitDefenderThetaGen:NN.ZexaF.34170.Fq0@aKzguXbi
VIPRETrojan.Win32.Generic!BT
TrendMicroBackdoor.Win32.ZEGOST.SMUKQ
FireEyeGeneric.mg.11c766ecffd7fae8
EmsisoftGen:Heur.Mint.Zard.30 (B)
SentinelOneStatic AI – Suspicious PE
JiangminBackdoor.Farfli.cmu
AviraHEUR/AGEN.1114680
Antiy-AVLTrojan/Generic.ASMalwS.28691E1
MicrosoftVirTool:Win32/CeeInject.TD!bit
GridinsoftTrojan.Win32.Kryptik.vb!s1
ArcabitTrojan.Mint.Zard.30
GDataGen:Heur.Mint.Zard.30
TACHYONBackdoor/W32.Farfli.516096
AhnLab-V3Trojan/Win32.CeeInject.C2835845
McAfeeGenericRXAA-AA!11C766ECFFD7
MAXmalware (ai score=89)
VBA32Backdoor.Farfli
TrendMicro-HouseCallBackdoor.Win32.ZEGOST.SMUKQ
RisingTrojan.Generic@ML.93 (RDML:cF6Xqndq0WGb9QwizNd5kg)
YandexTrojan.GenAsa!mdapWN+7Akw
IkarusVirus.Win32.CeeInject
FortinetW32/Kryptik.DDGL!tr
AVGWin32:Malware-gen

How to remove Win32/Injector.EEOZ?

Win32/Injector.EEOZ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment