Categories: Malware

Win32/Injector.EIVA removal guide

The Win32/Injector.EIVA file is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

What Win32/Injector.EIVA virus can do?

  • Reads data out of its own binary image
  • Anomalous binary characteristics

How to determine Win32/Injector.EIVA?


General:

Operating System: Windows 7 / 8 / 8.1 / 10 Virus Name: BehavesLike.Win32.ObfusRansom.fc

File Info:

Name: ada.exe

Size: 398128

Type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

MD5: 46994bfe0ab029cac66a877b469af3e9

SHA1: d36a153fb53e049289f5ce2da29bc3f720e52c0a

SH256: edd488b343ecba6d61aa2c7bf7f4e3cb4eedc65b2cec4b8406517714e20dc5b6

Version Info:

[No Data]

Win32/Injector.EIVA also known as:

ALYac Trojan.GenericKD.32697749
APEX Malicious
AVG FileRepMalware
Ad-Aware Trojan.GenericKD.32697749
AegisLab Trojan.Win32.NetWiredRC.m!c
AhnLab-V3 Malware/Win32.Generic.C3555802
Alibaba Backdoor:Win32/Injector.fb0f04bb
Arcabit Trojan.Generic.D1F2ED95
Avira TR/AD.NsisInject.inrrd
BitDefender Trojan.GenericKD.32697749
Bkav W32.HfsAutoB.
Comodo Malware@#x6fig63e9i8p
CrowdStrike win/malicious_confidence_70% (W)
Cybereason malicious.fb53e0
Cylance Unsafe
DrWeb Trojan.Inject3.30499
ESET-NOD32 a variant of Win32/Injector.EIVA
Endgame malicious (high confidence)
F-Secure Trojan.TR/AD.NsisInject.inrrd
FireEye Generic.mg.46994bfe0ab029ca
Fortinet W32/Injector.EIRM!tr
GData Trojan.GenericKD.32697749
Ikarus Trojan.Win32.Injector
Invincea heuristic
K7AntiVirus Trojan ( 0055b1d61 )
K7GW Trojan ( 0055b1d61 )
Kaspersky HEUR:Backdoor.Win32.NetWiredRC.gen
MAX malware (ai score=86)
Malwarebytes Trojan.Injector.DL
McAfee RDN/Generic.dx
McAfee-GW-Edition BehavesLike.Win32.ObfusRansom.fc
MicroWorld-eScan Trojan.GenericKD.32697749
Microsoft Trojan:Win32/Occamy.C
Paloalto generic.ml
Panda Trj/CI.A
Qihoo-360 Win32/Backdoor.0c5
Rising Trojan.Generic@ML.93 (RDML:HBYe8pICcn1EkKOxYXz2bg)
SentinelOne DFI – Malicious PE
Sophos Mal/Generic-S
Symantec Trojan.Gen.MBT
TrendMicro TROJ_GEN.R03FC0PKA19
TrendMicro-HouseCall TROJ_GEN.R002H0DK819
ZoneAlarm HEUR:Backdoor.Win32.NetWiredRC.gen

How to remove Win32/Injector.EIVA?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

MSIL/GenKryptik.GXIZ information

The MSIL/GenKryptik.GXIZ is considered dangerous by lots of security experts. When this infection is active,…

2 weeks ago

Malware.AI.2789448175 (file analysis)

The Malware.AI.2789448175 is considered dangerous by lots of security experts. When this infection is active,…

2 weeks ago

Jalapeno.1878 removal instruction

The Jalapeno.1878 is considered dangerous by lots of security experts. When this infection is active,…

2 weeks ago

What is “Trojan.Heur3.LPT.YmKfaKBcBekib”?

The Trojan.Heur3.LPT.YmKfaKBcBekib is considered dangerous by lots of security experts. When this infection is active,…

2 weeks ago

How to remove “Worm.Win32.Vobfus.exmt”?

The Worm.Win32.Vobfus.exmt is considered dangerous by lots of security experts. When this infection is active,…

2 weeks ago

About “TrojanDownloader:Win32/Beebone.JO” infection

The TrojanDownloader:Win32/Beebone.JO is considered dangerous by lots of security experts. When this infection is active,…

2 weeks ago