Malware

What is “Win32/Injector.EPEY”?

Malware Removal

The Win32/Injector.EPEY is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.EPEY virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • The binary likely contains encrypted or compressed data.
  • Sniffs keystrokes
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/Injector.EPEY?


File Info:

crc32: C0912ECB
md5: b4e73272ff37009d2a78313320252c2b
name: B4E73272FF37009D2A78313320252C2B.mlw
sha1: 1f57731ae15cc509fccf5fdcbf2925354c487bd9
sha256: d171f74f5d0cb8a469db9262869b3798ae0ed18098b4017207ff7f6e69fcd07a
sha512: 7160620522d8267d72599e8de56c1af5c2d7ea0aa3050a0724272b98a79115dca1c63d024b32e54c1e821ee5ee0011e43cb7e566068828e7702629ec476bd7c0
ssdeep: 24576:7E1WabY0/4nsXvo7gBzyOc1e5R0ud0YtUWGdi2+SQ9jDEiEEMad:7N0/q6A7MBcWtpGo2+SQ9jI5K
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Injector.EPEY also known as:

BkavW32.AIDetect.malware1
CynetMalicious (score: 100)
CylanceUnsafe
CrowdStrikewin/malicious_confidence_60% (D)
CyrenW32/Injector.AHD.gen!Eldorado
ESET-NOD32a variant of Win32/Injector.EPEY
APEXMalicious
KasperskyUDS:Trojan-PSW.Win32.Agensla.gen
SophosML/PE-A
McAfee-GW-EditionBehavesLike.Win32.ICLoader.dc
FireEyeGeneric.mg.b4e73272ff37009d
KingsoftWin32.PSWTroj.Undef.(kcloud)
MicrosoftTrojan:Win32/Predator!ml
McAfeeArtemis!B4E73272FF37
MalwarebytesTrojan.Injector
FortinetW32/KRYPTIK.AHD!tr
Paloaltogeneric.ml

How to remove Win32/Injector.EPEY?

Win32/Injector.EPEY removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment