Malware

Win32/Injector.EOQN malicious file

Malware Removal

The Win32/Injector.EOQN is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.EOQN virus can do?

  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/Injector.EOQN?


File Info:

crc32: B83F0C8C
md5: e709c7cbc66b35b69cae03670e3d7631
name: E709C7CBC66B35B69CAE03670E3D7631.mlw
sha1: f5f6a1e747a5855d12c65dbda0d879b6e0cf6a3e
sha256: 1d0bd7fe0b3b7002d842acfa3da391a8032de93b87dee5a40ea3d585c4a2c43b
sha512: 4101c686853bf2ae9b7e6951defa11c4bfa0cfea641cfac0d91e4297a8e7bc833c15d90a2a80115d8e47337bf51a0ce1d46cc67a9ac76594b70a89d93bb910d6
ssdeep: 3072:S1TxN62RDxPA1cfbegX8KytF+B0P4VCTky0Z3yJGUd2bp0wQ1JKlEpALhbiceRbs:S11QIegx0giJGHbVQbEEpAMRbZhGGIH/
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

LegalCopyright: Copyright gaoler
FileVersion: 41.29.83.27
CompanyName: postictal
LegalTrademarks: Varli Spoken
Comments: grow fond of
ProductName: itch
FileDescription: alternative
Translation: 0x0409 0x04e4

Win32/Injector.EOQN also known as:

BkavW32.AIDetectGBM.malware.01
Elasticmalicious (high confidence)
FireEyeGeneric.mg.e709c7cbc66b35b6
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
CyrenW32/Injector.AEY.gen!Eldorado
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Backdoor.Win32.Androm.gen
McAfee-GW-EditionBehavesLike.Win32.Vopak.dc
SophosML/PE-A
JiangminTrojan.Generic.gthqm
Antiy-AVLTrojan[Spy]/MSIL.Agent
MicrosoftTrojan:Win32/Wacatac.B!ml
GridinsoftTrojan.Win32.Downloader.oa!s1
ZoneAlarmHEUR:Backdoor.Win32.Androm.gen
CynetMalicious (score: 100)
MalwarebytesMalware.Heuristic.1001
ESET-NOD32a variant of Win32/Injector.EOQN
SentinelOneStatic AI – Suspicious PE
FortinetW32/Injector.EONL!tr

How to remove Win32/Injector.EOQN?

Win32/Injector.EOQN removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment