Malware

Win32/Injector.EONA removal tips

Malware Removal

The Win32/Injector.EONA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.EONA virus can do?

  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/Injector.EONA?


File Info:

crc32: A8EEE8BF
md5: 1f7ca492f5c43ea6bd4bf2e2391c1bbf
name: 1F7CA492F5C43EA6BD4BF2E2391C1BBF.mlw
sha1: 15ee3dede628ee9184b99e7e2443b7e082f9806f
sha256: 35e6adb235afe33e07e1078f371a55131043d12b8bc1eeda182961eea15fb329
sha512: cb6f9c28af705c7f735f1e774dbcd1f2eb259386274fcbaa74e772df9662eb4ce0b34eccd0b856aa1e1ca83ab0ac0c42f5c689bae6c85b83f6c629ca693e47a8
ssdeep: 12288:UkFoAvIdZCN86IaBYa+Udr2MOxVodSr5uzhqRmxqVy4KJ:1FXnBGUrrO3j8qsxqV7K
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright leash
FileVersion: 3.1.0.14
CompanyName: leash
LegalTrademarks: village
Comments: structure
ProductName: crossing
FileDescription: diet
Translation: 0x0409 0x04e4

Win32/Injector.EONA also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.45709452
FireEyeGeneric.mg.1f7ca492f5c43ea6
ALYacTrojan.GenericKD.45709452
CylanceUnsafe
SangforSuspicious.Win32.Artemis.41D63435C148
K7AntiVirusTrojan ( 005779851 )
BitDefenderTrojan.GenericKD.45709452
K7GWTrojan ( 005779851 )
CrowdStrikewin/malicious_confidence_80% (W)
CyrenW32/Androm.BU.gen!Eldorado
SymantecTrojan.Gen.2
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Malware.Gamarue-9830641-0
KasperskyHEUR:Trojan.Win32.Injects.gen
AlibabaTrojan:Win32/Androm.64b71fed
TencentWin32.Trojan.Injects.Ebhs
Ad-AwareTrojan.GenericKD.45709452
EmsisoftTrojan.Injector (A)
ComodoMalware@#p9uy0zh4z2ux
F-SecureTrojan.TR/Injector.fmcof
DrWebTrojan.DownLoader36.40264
TrendMicroTROJ_FRS.0NA103BC21
McAfee-GW-EditionArtemis!Trojan
MaxSecureTrojan.Malware.74373325.susgen
SophosMal/Generic-S
IkarusTrojan.Win32.Injector
AviraTR/Injector.ilail
MAXmalware (ai score=80)
Antiy-AVLTrojan/Win32.Injects
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Androm.VAM!MTB
GridinsoftAdware.Win32.Linkury.oa
ArcabitTrojan.Generic.D2B9788C
AegisLabTrojan.Multi.Generic.4!c
ZoneAlarmHEUR:Trojan.Win32.Injects.gen
GDataWin32.Trojan-Stealer.SnakeKeyLogger.UGRJZJ
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.RL_Androm.R365907
McAfeeArtemis!1F7CA492F5C4
VBA32Trojan.Woreflint
MalwarebytesSpyware.LokiBot
PandaTrj/CI.A
ESET-NOD32a variant of Win32/Injector.EONA
TrendMicro-HouseCallTROJ_FRS.0NA103BC21
RisingTrojan.Injector!8.C4 (CLOUD)
FortinetW32/Androm.ZUM!tr
AVGWin32:PWSX-gen [Trj]
Cybereasonmalicious.2f5c43
AvastWin32:PWSX-gen [Trj]
Qihoo-360Win32/Backdoor.Androm.HoMASOwA

How to remove Win32/Injector.EONA?

Win32/Injector.EONA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment