Malware

Win32/Injector.ELGD malicious file

Malware Removal

The Win32/Injector.ELGD is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.ELGD virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/Injector.ELGD?


File Info:

crc32: 02647DCF
md5: b7dd9ec6822e25172d19f7c537f20916
name: black.exe
sha1: c248864b16b7e56119675c20e37562b1c701bd10
sha256: e60807fbf4c0191dcca332ba7a7886bec872472e3d5dfc6cb9cba39b6c4f6322
sha512: 54cac18558bcc5651a33cd71c02ce36cf5842444215186c64ade0112e991460ca88ecb9e92440f09f0119da909c7a533f761cf7854f96c7863620eaedac2bc96
ssdeep: 1536:tI9CoII9tM4UwVICiXvmqT2yHVeVrlJNDDDD2hpDDDD3jsGpDDDDDDDDDDDDDDD:tCVI3j9Xb2yHVetl0n6TxuHJ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: SERRULATE
FileVersion: 1.00
CompanyName: ANANAS
Comments: ANANAS
ProductName: belongsraa
ProductVersion: 1.00
FileDescription: Liqui
OriginalFilename: SERRULATE.exe

Win32/Injector.ELGD also known as:

BkavW32.AIDetectVM.malware2
DrWebTrojan.Siggen9.26691
MicroWorld-eScanTrojan.GenericKD.33569196
Qihoo-360Win32/Trojan.822
CrowdStrikewin/malicious_confidence_80% (W)
BitDefenderTrojan.GenericKD.33569196
K7GWTrojan ( 005636b71 )
K7AntiVirusTrojan ( 005636b71 )
BitDefenderThetaGen:NN.ZevbaF.34104.jm0@aOP2tBji
F-ProtW32/Kryptik.BIF.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
GDataWin32.Trojan-Downloader.Dagurleo.IL02HG
KasperskyTrojan.Win32.Vebzenpak.key
AegisLabTrojan.Win32.Vebzenpak.4!c
TencentWin32.Trojan.Vebzenpak.Piaf
Ad-AwareTrojan.GenericKD.33569196
SophosTroj/Zbot-OQV
McAfee-GW-EditionBehavesLike.Win32.Fareit.ct
Trapminemalicious.moderate.ml.score
EmsisoftTrojan.GenericKD.33569196 (B)
IkarusTrojan.VB.Crypt
CyrenW32/Kryptik.BIF.gen!Eldorado
ArcabitTrojan.Generic.D20039AC
ZoneAlarmTrojan.Win32.Vebzenpak.key
MicrosoftTrojan:Win32/Wacatac.C!ml
Acronissuspicious
McAfeeArtemis!B7DD9EC6822E
MAXmalware (ai score=81)
MalwarebytesTrojan.GuLoader
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/Injector.ELGD
RisingTrojan.Injector!8.C4 (CLOUD)
eGambitUnsafe.AI_Score_100%
FortinetW32/ELGD!tr
AVGFileRepMalware

How to remove Win32/Injector.ELGD?

Win32/Injector.ELGD removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment