Malware

Win32/Injector.EKUB malicious file

Malware Removal

The Win32/Injector.EKUB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.EKUB virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/Injector.EKUB?


File Info:

crc32: C8CAA09F
md5: 2c3bf7c3b18daef944829dd6e42f5e4c
name: postback_i.exe
sha1: 8dbcb85279f6e8dc08026640183d85aaa7b210ac
sha256: 1aa56ca7a87bca231633fd822f3a3952139b7edb8abaaa1539787f284312cf29
sha512: 89736f6469845029d15efc8bb9f09773a7d59044f27adc95ef52c1d4de911bcdf5d2b34400957f4a33d74881f137830782af6a0e28f1f3443d44404023e48890
ssdeep: 768:AT3ik1Dd6ws9vSu7ttaVbMLARj1NL1cSlFLds0TsEJkMopOBBTHWW:AT3b6wsaetubFzNLeS/ds0TcW
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
ProductVersion: 1.00
InternalName: outbra
FileVersion: 1.00
OriginalFilename: outbra.exe
ProductName: beelze

Win32/Injector.EKUB also known as:

BkavW32.AIDetectVM.malware2
DrWebTrojan.DownLoader33.7990
MicroWorld-eScanTrojan.GenericKD.42697187
FireEyeTrojan.GenericKD.42697187
ALYacTrojan.GenericKD.42697187
CylanceUnsafe
SangforMalware
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.42697187
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/malicious_confidence_60% (W)
TrendMicroTrojanSpy.Win32.FAREIT.SMTHD.hp
BitDefenderThetaGen:NN.ZevbaCO.34096.dm0@aSdgIBci
CyrenW32/Kryptik.BCI.gen!Eldorado
SymantecInfostealer
ESET-NOD32a variant of Win32/Injector.EKUB
APEXMalicious
GDataWin32.Trojan.Injector.S9V57O
KasperskyTrojan.Win32.Vebzenpak.ehx
AlibabaTrojan:Win32/Vebzenpak.15381860
NANO-AntivirusTrojan.Win32.Vebzenpak.hcprvq
AegisLabTrojan.Multi.Generic.4!c
RisingTrojan.Injector!8.C4 (CLOUD)
EmsisoftTrojan.GenericKD.42697187 (B)
F-SecureTrojan.TR/Injector.ykohx
McAfee-GW-EditionRDN/Generic.dx
Trapminemalicious.moderate.ml.score
SophosMal/FareitVB-W
F-ProtW32/Kryptik.BCI.gen!Eldorado
AviraTR/Injector.ykohx
Antiy-AVLTrojan/Win32.Wacatac
MicrosoftTrojan:Win32/Tiggre!rfn
ArcabitTrojan.Generic.D28B81E3
ZoneAlarmTrojan.Win32.Vebzenpak.ehx
McAfeeRDN/Generic.dx
MalwarebytesTrojan.MalPack.VB
PandaTrj/GdSda.A
TrendMicro-HouseCallTrojanSpy.Win32.FAREIT.SMTHD.hp
TencentWin32.Trojan.Vebzenpak.Hrpj
IkarusTrojan.VB.Crypt
FortinetW32/EKUB!tr
Ad-AwareTrojan.GenericKD.42697187
AVGFileRepMalware
Qihoo-360Generic/HEUR/QVM03.0.8927.Malware.Gen

How to remove Win32/Injector.EKUB?

Win32/Injector.EKUB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment