Malware

Win32/Injector.ENNI removal instruction

Malware Removal

The Win32/Injector.ENNI is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.ENNI virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Executed a process and injected code into it, probably while unpacking
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/Injector.ENNI?


File Info:

crc32: 125FC8A6
md5: 2b47a7bb815749849920cb4febf96e6e
name: upload_file
sha1: 4dbe8fc8351954bf8ab6dc63b3415feafa666294
sha256: 553ad8c805d4151e154177bb4fbb1678711306d8eefba081ec36bf0518d4e88f
sha512: 111289def650c6732569cb0b78c9aec85b0c74b2eb38aa99eaa8d69fd838742bb9a25d31231483128eedbb5150eee05a1d7b9bdbcf4b83fa9fb899a8c454ea4a
ssdeep: 12288:26LIdiPeP0pK+6kP/j2hEfPgqZkY4AJ0F8t40BR6lefKDrRTlt9fhS53JNz5ZcXw:26rrc+6o+EAqqG0yGo4RRDuPcXU/
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Injector.ENNI also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.43985755
CAT-QuickHealTrojan.Multi
McAfeeFareit-FZN!2B47A7BB8157
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Multi.Generic.4!c
SangforMalware
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.43985755
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.835195
TrendMicroTrojan.Win32.MALREP.THJOGBO
CyrenW32/Agent.LYBB-3232
SymantecTrojan.Gen.MBT
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Malware.Generic-9774214-0
KasperskyHEUR:Trojan.Win32.Kryptik.gen
AlibabaTrojan:Win32/DelfInject.ali2000015
NANO-AntivirusTrojan.Win32.SpyBotNET.hynihx
Ad-AwareTrojan.GenericKD.43985755
EmsisoftTrojan.GenericKD.43985755 (B)
ComodoMalware@#3ewjrgou4krrc
F-SecureTrojan.TR/Injector.eddsr
DrWebBackDoor.SpyBotNET.25
InvinceaMal/Generic-S
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
FireEyeGeneric.mg.2b47a7bb81574984
SophosMal/Generic-S
IkarusTrojan.Inject
AviraTR/Injector.eddsr
Antiy-AVLTrojan/Win32.Kryptik
MicrosoftVirTool:Win32/CeeInject.JJ!bit
ArcabitTrojan.Generic.D29F2B5B
SUPERAntiSpywarePUP.Wajam/Variant
ZoneAlarmHEUR:Trojan.Win32.Kryptik.gen
GDataTrojan.GenericKD.43985755
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.Generic.C4204183
BitDefenderThetaGen:NN.ZelphiF.34566.aHW@a8dxuGli
ALYacTrojan.GenericKD.43985755
MAXmalware (ai score=80)
VBA32TScope.Trojan.Delf
MalwarebytesTrojan.MalPack.DLF
PandaTrj/Genetic.gen
ZonerTrojan.Win32.95435
ESET-NOD32a variant of Win32/Injector.ENNI
TrendMicro-HouseCallTrojan.Win32.MALREP.THJOGBO
RisingMalware.Undefined!8.C (TFE:5:1Z0LmEyi4PG)
YandexTrojan.Kryptik!/3Vybof5wrY
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_92%
FortinetW32/Injector.ETNW!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Win32/Trojan.469

How to remove Win32/Injector.ENNI?

Win32/Injector.ENNI removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment