Malware

What is “Win32/Injector.EOIH”?

Malware Removal

The Win32/Injector.EOIH is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.EOIH virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/Injector.EOIH?


File Info:

crc32: 2B77A7B2
md5: 0a682a6c787ed64a4c196dd0976f2d74
name: 0A682A6C787ED64A4C196DD0976F2D74.mlw
sha1: 189ef3efa8ea462cbe5df3cbef5f74c9931b3e2e
sha256: 5cb526d0ba47b0ec4e671b1e6a512ddcd2ecc66a29ebe13c88291f56e3a9f1d4
sha512: ac035315dff9887831bfd09eb41141fdde1a5eea3c00c787c38a421e8e8dcd11a7efce8ff85d61f523cc5d86988774ccdf93b0fac71f565432bbd59f56b9e6d4
ssdeep: 768:KbPzrI8wBi0SIMMoP/Bv+RcgHhhHiX6cJGo1PDuP0KwNZN2T:6PHI8wBWIuvY97FcJGoV2056
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: Udkoge7
FileVersion: 7.00
CompanyName: Breaking Software
Comments: Breaking Software
ProductName: Software
ProductVersion: 7.00
FileDescription: Software
OriginalFilename: Udkoge7.exe

Win32/Injector.EOIH also known as:

Elasticmalicious (high confidence)
McAfeePWS-FCVJ!0A682A6C787E
MalwarebytesGeneric.Malware/Suspicious
SangforMalware
K7GWTrojan ( 00576de81 )
Cybereasonmalicious.fa8ea4
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyUDS:DangerousObject.Multi.Generic
AlibabaTrojan:Win32/Injector.0a606333
AegisLabTrojan.Multi.Generic.4!c
RisingTrojan.Injector!8.C4 (TFE:5:dSkuR1oVUTI)
SophosMal/Generic-S
McAfee-GW-EditionPWS-FCVJ!0A682A6C787E
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmUDS:DangerousObject.Multi.Generic
GDataWin32.Trojan-Downloader.GuLoader.LOYH89
BitDefenderThetaGen:NN.ZevbaF.34780.dm0@aWVX5Bai
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Injector.EOIH
TrendMicro-HouseCallTROJ_GEN.F0D1C00AR21
FortinetW32/Kryptik.EOGY!tr
AVGFileRepMalware
AvastFileRepMalware

How to remove Win32/Injector.EOIH?

Win32/Injector.EOIH removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment