Malware

Win32/Injector.ENAB removal tips

Malware Removal

The Win32/Injector.ENAB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.ENAB virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Executed a process and injected code into it, probably while unpacking
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
www.amazinghometips.com
www.glamotd.com
www.mountaineeringtoursecuador.com
www.karmozd.net

How to determine Win32/Injector.ENAB?


File Info:

crc32: EFA8E7CD
md5: bd5aef7848775f79ddd4820775b2a3ca
name: vbc.exe
sha1: 36ae743ccd8bd4dabee02394fda0d09dde2f8558
sha256: 001bf57ded55236e2f1f0bbf7bf313b5397d955a9ce80009b2ac61b3f84e5544
sha512: f629c0ea3d5d9f575a3a37cb504ec6fb596e8b38bdfa15bd5e16a435c73cfc6aa1d17fd909f8f717ba8e1b7af85a23dab04338542d3e328e15d797961385d952
ssdeep: 12288:qmp9XVk3rNq8srw+ZdKSsWItO8n+D0s+rIJA/XO9Y7rap/XBe5:3lQNqHMWKKcAFrJ6e9Yna7e
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Injector.ENAB also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.34353795
FireEyeGeneric.mg.bd5aef7848775f79
CAT-QuickHealTrojan.Sigmal.S3205867
Qihoo-360Win32/Trojan.469
McAfeeFareit-FPQ!BD5AEF784877
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Multi.Generic.4!c
K7AntiVirusTrojan ( 0056c6e51 )
BitDefenderTrojan.GenericKD.34353795
K7GWTrojan ( 0056c6e51 )
CrowdStrikewin/malicious_confidence_90% (W)
TrendMicroTROJ_GEN.R049C0DHG20
F-ProtW32/Delf.LO.gen!Eldorado
SymantecInfostealer.Lokibot!43
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Dropper.LokiBot-9312584-0
KasperskyHEUR:Trojan.Win32.Kryptik.gen
AlibabaTrojan:Win32/runner.ali1000123
RisingTrojan.GenKryptik!8.AA55 (CLOUD)
Ad-AwareTrojan.GenericKD.34353795
ComodoTrojWare.Win32.UMal.xzavz@0
F-SecureTrojan.TR/AD.Swotter.AF
DrWebBackDoor.SpyBotNET.25
Invinceaheuristic
FortinetW32/Injector.EMZL!tr
SophosMal/Generic-S
SentinelOneDFI – Suspicious PE
CyrenW32/Delf.LO.gen!Eldorado
JiangminTrojan.Kryptik.cbt
AviraTR/AD.Swotter.AF
MAXmalware (ai score=89)
Antiy-AVLTrojan/Win32.Injector
ArcabitTrojan.Generic.D20C3283
ZoneAlarmHEUR:Trojan.Win32.Kryptik.gen
MicrosoftTrojan:Win32/NanoCore.VD!MTB
CynetMalicious (score: 85)
AhnLab-V3Suspicious/Win.Delphiless.X2091
BitDefenderThetaGen:NN.ZelphiF.34186.UGX@a84YJvki
ALYacTrojan.GenericKD.34353795
VBA32TScope.Trojan.Delf
MalwarebytesTrojan.MalPack.DLF
PandaTrj/CI.A
ZonerTrojan.Win32.92352
ESET-NOD32a variant of Win32/Injector.ENAB
TrendMicro-HouseCallTROJ_GEN.R049C0DHG20
TencentWin32.Trojan.Kryptik.Phgk
IkarusTrojan.Inject
eGambitUnsafe.AI_Score_99%
GDataTrojan.GenericKD.34353795
AVGWin32:Trojan-gen
Cybereasonmalicious.848775
Paloaltogeneric.ml

How to remove Win32/Injector.ENAB?

Win32/Injector.ENAB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment