Malware

Win32/Injector.EKUF removal instruction

Malware Removal

The Win32/Injector.EKUF is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.EKUF virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • The executable is likely packed with VMProtect
  • Executed a process and injected code into it, probably while unpacking
  • Anomalous binary characteristics

How to determine Win32/Injector.EKUF?


File Info:

crc32: 0C9C9CB7
md5: b63e5f52732c36d8ee157f2cea41ba76
name: asd.exe
sha1: b94fde3474aaf1d917d9803d0436a15929b7b3e4
sha256: 02bf1a78be8ee708b92a6ad9ffee4ae0db2529ba2023d27c22ee6f34eedbe19a
sha512: 4a8900f7ccc13c20c299c752aa19270311a65607957d250c9b7e4ce284fca0371314e8cef108a110bbb117b163ac3bd4f6ee16febc5e8b1326568fc726214f9d
ssdeep: 24576:Lt6cgPkX4REnwBpcMW6a0Cwe4ARURG39X/Q7Fz1sFxywN4m:LtE3REwLcM5a0XLMtPQ91sFo+
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Injector.EKUF also known as:

MicroWorld-eScanTrojan.GenericKD.42736316
CAT-QuickHealTrojan.Wacatac
McAfeeArtemis!B63E5F52732C
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Malicious.4!c
SangforMalware
K7AntiVirusTrojan ( 005616b71 )
BitDefenderTrojan.GenericKD.42736316
K7GWTrojan ( 005616b71 )
Cybereasonmalicious.474aaf
ArcabitTrojan.Generic.D28C1ABC
Invinceaheuristic
BitDefenderThetaGen:NN.ZelphiF.34096.gHW@amDZijii
ESET-NOD32a variant of Win32/Injector.EKUF
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
KasperskyTrojan-PSW.Win32.Racealer.dmv
AlibabaTrojanPSW:Win32/Racealer.14bfd8cb
NANO-AntivirusTrojan.Win32.Racealer.hdkbij
ViRobotTrojan.Win32.Z.Siggen9.1161728
TencentWin32.Trojan-qqpass.Qqrob.Pdvy
Endgamemalicious (high confidence)
EmsisoftTrojan.GenericKD.42736316 (B)
F-SecureTrojan.TR/Injector.nymjx
DrWebTrojan.Siggen9.15849
TrendMicroTROJ_GEN.R03BC0WC320
McAfee-GW-EditionBehavesLike.Win32.Fareit.tc
FortinetW32/EKUF!tr
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.b63e5f52732c36d8
SophosMal/Generic-S
SentinelOneDFI – Suspicious PE
CyrenW32/Trojan.YBTK-3014
JiangminTrojanDropper.Scrop.ajl
WebrootW32.Trojan.Gen
AviraTR/Injector.nymjx
Antiy-AVLTrojan/Win32.Wacatac
MicrosoftTrojan:Win32/Occamy.C
ZoneAlarmTrojan-PSW.Win32.Racealer.dmv
Acronissuspicious
VBA32TScope.Trojan.Delf
ALYacTrojan.GenericKD.42736316
Ad-AwareTrojan.GenericKD.42736316
MalwarebytesTrojan.MalPack.DLF
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R03BC0WC320
RisingTrojan.Injector!8.C4 (CLOUD)
IkarusTrojan.Inject
eGambitUnsafe.AI_Score_99%
GDataTrojan.GenericKD.42736316
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Generic/Trojan.4e9

How to remove Win32/Injector.EKUF?

Win32/Injector.EKUF removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment