Malware

What is “Win32/Injector.ENAH”?

Malware Removal

The Win32/Injector.ENAH is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.ENAH virus can do?

  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/Injector.ENAH?


File Info:

crc32: E0BB19A0
md5: 3d1c25f2ce0e602d37804d2374537e22
name: svchost.exe
sha1: e988874a4e543ca712a0f139dc505b79ed02c674
sha256: 26c533b90aca6cf6d4f7223c9df871b80cff3e7f59b78d73fd2665712206584a
sha512: 92d9a4a9fbf9129234ce70fd1aa8b5c247f3ed7a826a144bcbf37f82752053fa34bcca64ab39337b144843fa245a77b4d9fd3ea3529ff7bf7cb18f2cec3f04ee
ssdeep: 24576:NuR8Ep7Yy4K88Y1I7JG4oQj/0PVgf2YX5ZB1RrW/s:PEpUy4kOEJGbQIPVWx91RQs
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Win32/Injector.ENAH also known as:

Elasticmalicious (high confidence)
FireEyeGeneric.mg.3d1c25f2ce0e602d
CAT-QuickHealTrojanransom.Myxah
McAfeeArtemis!3D1C25F2CE0E
CylanceUnsafe
ZillyaTrojan.MyxaH.Win32.687
AegisLabTrojan.Win32.MyxaH.j!c
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.43678073
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.a4e543
CyrenW32/Trojan.QFUF-1053
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 85)
KasperskyHEUR:Trojan-Ransom.Win32.MyxaH.gen
AlibabaRansom:Win32/MyxaH.89a07d56
ViRobotTrojan.Win32.Z.Injector.1032945
MicroWorld-eScanTrojan.GenericKD.43678073
RisingTrojan.Injector/NSIS!1.CA4F (CLASSIC)
Ad-AwareTrojan.GenericKD.43678073
F-SecureTrojan.TR/Injector.nlqnk
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_MyxaH.R002C0GHO20
SophosMal/Generic-S
IkarusTrojan.Win32.Injector
JiangminTrojanDownloader.Generic.bful
AviraTR/Injector.nlqnk
MAXmalware (ai score=82)
MicrosoftTrojan:Win32/Ymacco.AA07
ArcabitTrojan.Generic.D29A7979
ZoneAlarmHEUR:Trojan-Ransom.Win32.MyxaH.gen
GDataTrojan.GenericKD.43678073
ALYacTrojan.GenericKD.43678073
VBA32Trojan.Casur
MalwarebytesTrojan.MalPack.NSIS
PandaTrj/CI.A
ESET-NOD32a variant of Win32/Injector.ENAH
TrendMicro-HouseCallRansom_MyxaH.R002C0GHO20
TencentWin32.Trojan.Myxah.Lkee
SentinelOneDFI – Suspicious PE
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_90% (W)
Qihoo-360Win32/Trojan.Ransom.a21

How to remove Win32/Injector.ENAH?

Win32/Injector.ENAH removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment