Malware

About “Win32/Injector.ENVA” infection

Malware Removal

The Win32/Injector.ENVA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.ENVA virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/Injector.ENVA?


File Info:

crc32: C6F45D4B
md5: e20a97beca0df06675c533ae77aaa604
name: E20A97BECA0DF06675C533AE77AAA604.mlw
sha1: f4f9b709e0428e44ca8f5f7129dd4efcbd1a4482
sha256: 55193fc2ef8da805e9c4d8cb73eeb0647c1bac3bb3f2ec3d7e692c7e92957e2b
sha512: 9107cc114ef94a888064d2503806d00c8a60694968d9c334c80454f8a2d5413f066274a47b0ff2d2c8ab2afc0ac12339a61d793c340aa72e8863457a9248a8aa
ssdeep: 12288:VH6Oc+78AMBMFAh0WkTCuqe1XJ+uvoO/nZ5/G/iE:1cc8MK0BvoO/nZQaE
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Win32/Injector.ENVA also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.44502449
FireEyeGeneric.mg.e20a97beca0df066
CAT-QuickHealTrojan.Wacatac
McAfeeArtemis!E20A97BECA0D
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 005725041 )
BitDefenderTrojan.GenericKD.44502449
K7GWTrojan ( 005725041 )
CrowdStrikewin/malicious_confidence_80% (D)
TrendMicroTROJ_GEN.R002C0PKF20
SymantecML.Attribute.HighConfidence
APEXMalicious
KasperskyHEUR:Trojan.Win32.Remcos.gen
AlibabaTrojan:Win32/Remcos.69be24e7
ViRobotTrojan.Win32.Z.Injector.499410.A
Ad-AwareTrojan.GenericKD.44502449
SophosMal/Generic-S
F-SecureTrojan.TR/Injector.mlxib
DrWebTrojan.DownLoader35.14010
InvinceaMal/Generic-S
McAfee-GW-EditionBehavesLike.Win32.AdwareAdload.gc
EmsisoftTrojan.GenericKD.44502449 (B)
IkarusTrojan.Win32.Injector
WebrootW32.Trojan.Gen
AviraTR/Injector.mlxib
MAXmalware (ai score=81)
MicrosoftTrojan:Win32/Bluteal!rfn
GridinsoftTrojan.Win32.Downloader.oa
ArcabitTrojan.Generic.D2A70DB1
ZoneAlarmHEUR:Trojan.Win32.Remcos.gen
GDataTrojan.GenericKD.44502449
CynetMalicious (score: 100)
AhnLab-V3Malware/Gen.Reputation.C4225058
ALYacTrojan.GenericKD.44502449
VBA32Trojan.Remcos
ESET-NOD32a variant of Win32/Injector.ENVA
TrendMicro-HouseCallTROJ_GEN.R002C0PKF20
SentinelOneStatic AI – Suspicious PE
AVGWin32:Trojan-gen
Cybereasonmalicious.9e0428
AvastWin32:Trojan-gen
Qihoo-360Win32/Trojan.793

How to remove Win32/Injector.ENVA?

Win32/Injector.ENVA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment