Malware

Win32/Injector.ELEC removal guide

Malware Removal

The Win32/Injector.ELEC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.ELEC virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Executed a process and injected code into it, probably while unpacking
  • Attempts to modify proxy settings
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

Related domains:

mikeservers.eu

How to determine Win32/Injector.ELEC?


File Info:

crc32: 0E419BD2
md5: ba1bf5f6856557711d4c5612faf72ae6
name: anyisouthz.exe
sha1: 59059ca0ee029e84bc5bc4dc379e3729790562fd
sha256: 8d14c0df93fbcf646ce37351184e87ea185e6afa14ae9799828f6c3d61783492
sha512: 211d53a12c97092045294448c4da2f1975fe028f2d9b31e1a9bd6a50c0fc275241ee5513ce91a7bdb5cb8b2a76ced53be0b04732edfb6dac6bd02a7a22fcdc57
ssdeep: 12288:j06Myun9Z1Vh6bC5Xv08EsaZ8CYHSJ4Ox1TIowVyNXAvoCo4GAusBfrCN8AztTGx:j0D3f35XsjrmvoCUOYI/IEg5jt70gVEt
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Injector.ELEC also known as:

MicroWorld-eScanTrojan.GenericKD.42869421
FireEyeGeneric.mg.ba1bf5f685655771
Qihoo-360Win32/Trojan.PSW.086
McAfeeArtemis!BA1BF5F68565
CylanceUnsafe
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.42869421
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.0ee029
TrendMicroTrojanSpy.Win32.LOKI.SMDF.hp
F-ProtW32/Delf.AFC
APEXMalicious
AvastWin32:Malware-gen
GDataTrojan.GenericKD.42869421
KasperskyHEUR:Trojan-PSW.Win32.Agensla.gen
ViRobotTrojan.Win32.Z.Wacatac.709632
AegisLabTrojan.Multi.Generic.4!c
TencentWin32.Trojan-qqpass.Qqrob.Pepn
Ad-AwareTrojan.GenericKD.42869421
SophosMal/Fareit-V
DrWebTrojan.PWS.Siggen2.45242
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Fareit.jh
Trapminemalicious.high.ml.score
EmsisoftTrojan.GenericKD.42869421 (B)
IkarusTrojan.Win32.Injector
CyrenW32/Delf.AAHN-3671
WebrootW32.Malware.gen
Antiy-AVLGrayWare/Win32.Generic
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D28E22AD
ZoneAlarmHEUR:Trojan-PSW.Win32.Agensla.gen
MicrosoftTrojan:Win32/Lokibot.G!MTB
AhnLab-V3Suspicious/Win.Delphiless.X2059
Acronissuspicious
BitDefenderThetaGen:NN.ZelphiF.34100.RGW@aG@LaTei
ALYacTrojan.GenericKD.42869421
MAXmalware (ai score=83)
MalwarebytesBackdoor.NanoCore
PandaTrj/CI.A
ESET-NOD32a variant of Win32/Injector.ELEC
TrendMicro-HouseCallTrojanSpy.Win32.LOKI.SMDF.hp
RisingTrojan.Injector!1.AF18 (CLOUD)
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_100%
FortinetW32/Injector.ELDL!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
MaxSecureTrojan.Malware.300983.susgen

How to remove Win32/Injector.ELEC?

Win32/Injector.ELEC removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment