Malware

Win32/Injector.EOXK removal

Malware Removal

The Win32/Injector.EOXK is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.EOXK virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process created a hidden window
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • Installs itself for autorun at Windows startup
  • Attempts to create or modify system certificates
  • Anomalous binary characteristics

How to determine Win32/Injector.EOXK?


File Info:

crc32: 79D2FEBA
md5: 3e3465b1450eb1621f0842a8e6eab57a
name: 3E3465B1450EB1621F0842A8E6EAB57A.mlw
sha1: 310822e445eddacf3997d48a89af67298f416b90
sha256: 68beaa432d1df18ba6becce9c55beb5dd969b4d596d4309c2a87c1debdc2b857
sha512: df3659dc375bbfe633166098f6878d3ae2f254d9f8e2129a7ce29320a52824c68c43abe8f34b555e9a8d1e453d26329fd696a0980510379ae1a14cc635d33cfb
ssdeep: 393216:+Qxl0uJCcQ6/QU4oWOEC8Mlibbxln185cd+:fl0uJCcH/QUye/ibb/18a
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
InternalName:
FileVersion: 1.0.0.0
CompanyName: Install
LegalTrademarks:
Comments:
ProductName:
ProductVersion: 1.0.0.0
FileDescription:
OriginalFilename:
Translation: 0x041b 0x04e2

Win32/Injector.EOXK also known as:

ALYacGen:Variant.Zusy.373090
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaTrojan:Win32/Injector.02b42e56
CyrenW32/Injector.AFY.gen!Eldorado
ESET-NOD32a variant of Win32/Injector.EOXK
APEXMalicious
AvastFileRepMalware
KasperskyHEUR:Trojan.Win32.Qshell.gen
BitDefenderGen:Variant.Zusy.373090
MicroWorld-eScanGen:Variant.Zusy.373090
Ad-AwareGen:Variant.Zusy.373090
McAfee-GW-EditionBehavesLike.Win32.Dropper.vc
FireEyeGen:Variant.Zusy.373090
EmsisoftGen:Variant.Zusy.373090 (B)
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Zusy.D5B162
GDataGen:Variant.Zusy.373090
McAfeeArtemis!3E3465B1450E
MAXmalware (ai score=86)
VBA32BScope.Trojan.Script.Phonzy
RisingTrojan.Injector!1.D40E (CLOUD)
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Injector.EOXK!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Win32/Injector.EOXK?

Win32/Injector.EOXK removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment