Malware

What is “Win32/Injector.EODV”?

Malware Removal

The Win32/Injector.EODV is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.EODV virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Unconventionial language used in binary resources: Russian
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/Injector.EODV?


File Info:

crc32: F95DCDE1
md5: a93af1e2096c6baa9909f2aa868666e5
name: A93AF1E2096C6BAA9909F2AA868666E5.mlw
sha1: 1987fc6f967c65723de0ee769af09772578fcff2
sha256: 828bef2c1c478b2cfe831318564d51e27cff0ef0b238f1b1c06b9b0223412400
sha512: 171a2a0ec7b03e41013981e3e1e7bd0e53ff02e60e46765ccf0f678cd0241131306ec9fe760fbfdcbc92ea049aab9d154cbc1dacb724dd6214c61bb4ad930a18
ssdeep: 12288:B0O9si66PFSav1nfcja/P4Tulz6dOG6767adSwiscMnw:B0a+6UOfCa/A/6767av2V
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: 2013 xa9 Maxidix s.r.o.
InternalName: DFM Converter
FileVersion: 13.1.3.78
CompanyName: Maxidix s.r.o.
LegalTrademarks: 2013 xa9 Maxidix s.r.o.
Comments:
ProductName: Delphi DFM Converter
ProductVersion: 13
FileDescription: Delphi DFM Converter
OriginalFilename: DFMConverter.exe
Translation: 0x0409 0x04e4

Win32/Injector.EODV also known as:

BkavW32.AIDetectVM.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.35832651
FireEyeGeneric.mg.a93af1e2096c6baa
Qihoo-360Win32/Trojan.Ransom.ed7
McAfeeFareit-FZO!A93AF1E2096C
CylanceUnsafe
K7AntiVirusTrojan ( 005752331 )
BitDefenderTrojan.GenericKD.35832651
K7GWTrojan ( 005752331 )
Cybereasonmalicious.f967c6
CyrenW32/Injector.PCQD-1898
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTROJ_GEN.R002H0CLN20
AvastWin32:Malware-gen
ClamAVWin.Trojan.Generic-9816732-0
KasperskyHEUR:Trojan-Ransom.Win32.Blocker.gen
AlibabaRansom:Win32/Blocker.39f13dd1
ViRobotTrojan.Win32.S.Agent.626328
AegisLabTrojan.Win32.Blocker.j!c
RisingTrojan.Injector!1.D0A2 (CLASSIC)
Ad-AwareTrojan.GenericKD.35832651
EmsisoftTrojan.Injector (A)
F-SecureTrojan.TR/AD.DbatLdr.neyzf
DrWebTrojan.PWS.Siggen2.60925
McAfee-GW-EditionFareit-FZO!A93AF1E2096C
SophosMal/Generic-S
IkarusTrojan.Inject
AviraTR/AD.DbatLdr.neyzf
MAXmalware (ai score=100)
KingsoftWin32.Troj.Undef.(kcloud)
GridinsoftTrojan.Win32.Downloader.oa
ArcabitTrojan.Generic.D222C34B
ZoneAlarmHEUR:Trojan-Ransom.Win32.Blocker.gen
MicrosoftPWS:Win32/Fareit.SM!MTB
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Injector.R360174
BitDefenderThetaGen:NN.ZelphiF.34700.MG2@aK04wAmk
ALYacTrojan.Ransom.Blocker.gen
MalwarebytesTrojan.MalPack.SMY
PandaTrj/GdSda.A
APEXMalicious
ESET-NOD32a variant of Win32/Injector.EODV
TencentWin32.Trojan.Falsesign.Lmas
SentinelOneStatic AI – Suspicious PE
eGambitPE.Heur.InvalidSig
FortinetW32/Injector.EOCJ!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Win32/Injector.EODV?

Win32/Injector.EODV removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment