Malware

How to remove “Win32/Injector.ELJE”?

Malware Removal

The Win32/Injector.ELJE is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.ELJE virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/Injector.ELJE?


File Info:

crc32: 4EF8AFFC
md5: 280deef36e8bcf318d71ee70e6e93a8a
name: king.exe
sha1: d4bdc1197640ddd33d5f8b274e472561de62b96e
sha256: 91dfd41acf3e4f461c8c0c5ffdad45e08e92c839dd4f4f233b3e0ff57efd5064
sha512: 71cfdee0179a3eadf506ac5d17a7541727cb6ad635c62f33df32f6f7ccbbd56f2d505c67d0d02820084edc642ef2bec6364f65922be10da6bf9db34906d3ea15
ssdeep: 768:wdq5ZDl1eiGOXgmU5NCPZqB3fKBpXp6ql9LItgvyIXK+7U9o9X6:DFgmUNbBvkkql9bvyID7eoU
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: delmng
InternalName: Isoimmu8
FileVersion: 1.00
CompanyName: TRaVIs
LegalTrademarks: Archib
Comments: TRaVIs
ProductName: cladrast
ProductVersion: 1.00
FileDescription: Mesopar
OriginalFilename: Isoimmu8.exe

Win32/Injector.ELJE also known as:

McAfeeFareit-FRR!280DEEF36E8B
CylanceUnsafe
F-ProtW32/Kryptik.BJB.gen!Eldorado
APEXMalicious
KasperskyUDS:DangerousObject.Multi.Generic
AlibabaTrojan:Win32/Injector.456df898
McAfee-GW-EditionFareit-FRR!280DEEF36E8B
Trapminemalicious.high.ml.score
CyrenW32/Kryptik.BJB.gen!Eldorado
eGambitUnsafe.AI_Score_99%
ZoneAlarmUDS:DangerousObject.Multi.Generic
MicrosoftTrojan:Win32/Wacatac.C!ml
Acronissuspicious
BitDefenderThetaGen:NN.ZevbaF.34104.gm0@aCdvzyfi
MalwarebytesTrojan.GuLoader
ESET-NOD32a variant of Win32/Injector.ELJE
TencentWin32.Trojan.Inject.Auto
FortinetW32/GuLoader.VHID!tr
WebrootW32.Malware.Gen
AVGFileRepMalware
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360HEUR/QVM03.0.622F.Malware.Gen

How to remove Win32/Injector.ELJE?

Win32/Injector.ELJE removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment