Malware

Win32/Injector.EPGE malicious file

Malware Removal

The Win32/Injector.EPGE is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.EPGE virus can do?

  • Executable code extraction
  • Performs some HTTP requests
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/Injector.EPGE?


File Info:

crc32: 07E21077
md5: b6d25d551f221fbdfd017198f7988af5
name: B6D25D551F221FBDFD017198F7988AF5.mlw
sha1: fea253ed51b4eaf2ee47a62e24c399a79243fac4
sha256: 7e4bb8db363bbb2fdb438b89700166146671fca493247486d678cbff47bec727
sha512: d426633595898a48f25a74eef609d2c17b4072ede0394b3d1a47f6e70048b62d911ec46ee5639b941ee0393547ac360b331ba45750716aeebca1e0adcf755f19
ssdeep: 1536:VteqDBq+88SWhx21ND05m/D86HZgcN7uf1kOlG:6qNqCE1mOQ65gGwvE
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: StuntWare All Rights Reserved.
InternalName: Nonsuc3
FileVersion: 1.00
Comments: StuntWare Copyright (C).
ProductName: Blokeringenfre4
ProductVersion: 1.00
FileDescription: StuntWare Ltd.
OriginalFilename: Nonsuc3.exe

Win32/Injector.EPGE also known as:

CynetMalicious (score: 100)
ALYacTrojan.Agent.Injector.Gen
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (W)
Cybereasonmalicious.d51b4e
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.EPGE
APEXMalicious
AvastFileRepMalware
KasperskyUDS:Worm.Win32.WBVB
BitDefenderThetaGen:NN.ZevbaF.34686.hm0@ayG@2Shi
McAfee-GW-EditionBehavesLike.Win32.Fareit.ch
KingsoftWin32.Troj.Generic_a.a.(kcloud)
AegisLabWorm.Win32.WBVB.o!c
ZoneAlarmUDS:DangerousObject.Multi.Generic
McAfeeArtemis!B6D25D551F22
RisingTrojan.Injector!8.C4 (CLOUD)
IkarusWin32.Outbreak
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Win32/Injector.EPGE?

Win32/Injector.EPGE removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment