Malware

Win32/Injector.EPPV information

Malware Removal

The Win32/Injector.EPPV is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.EPPV virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/Injector.EPPV?


File Info:

crc32: 3D934E75
md5: a5a0d8c50db20164b4897cd982926e08
name: A5A0D8C50DB20164B4897CD982926E08.mlw
sha1: 430ae871a18ea43cb87cf3d8030ec4eb14043284
sha256: d01ae8d985a333d9c39bad55b8129b73451f037bff556a08ddb7f7efc17818fa
sha512: 6ff5da4fa1ab6487cf2be36aa5b6a95ebd9a18af20ca03f4803c9e5eecf890f5e923e275b0013a69a388ec998d40a9a2f92be4e768d25a1fa05d733f52bfea7d
ssdeep: 1536:Ij3kNKA2xhjR8geZUQN1bq15UzZBoeMPQmvO4NqAH9fxtSJet8eNdqPEVBP181t:U0NKA2xNmgeVN1ppmzqAd1/ct2LKk0
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: Rekordholderne2
FileVersion: 1.00
CompanyName: Elastic
Comments: Elastic
ProductName: Elastic
ProductVersion: 1.00
FileDescription: Elastic
OriginalFilename: Rekordholderne2.exe

Win32/Injector.EPPV also known as:

BkavW32.AIDetect.malware2
MicroWorld-eScanTrojan.GenericKD.37150497
ALYacTrojan.GenericKD.37150497
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (W)
AlibabaBackdoor:Win32/Androm.b2f884cf
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.1a18ea
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.EPPV
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyBackdoor.Win32.Androm.uqfb
BitDefenderTrojan.GenericKD.37150497
Ad-AwareTrojan.GenericKD.37150497
SophosGeneric PUA ED (PUA)
ComodoTrojWare.Win32.UMal.glnpx@0
BitDefenderThetaGen:NN.ZevbaF.34770.lm0@a4sRtWoi
McAfee-GW-EditionBehavesLike.Win32.Fareit.cm
FireEyeGeneric.mg.a5a0d8c50db20164
EmsisoftTrojan.GenericKD.37150497 (B)
WebrootW32.Malware.Gen
eGambitUnsafe.AI_Score_99%
KingsoftWin32.Troj.Generic_a.a.(kcloud)
AegisLabTrojan.Win32.Androm.m!c
GDataTrojan.GenericKD.37150497
AhnLab-V3Malware/Win.Generic.C4537686
McAfeeRDN/Loki
MAXmalware (ai score=88)
VBA32TScope.Trojan.VB
MalwarebytesTrojan.GuLoader
PandaTrj/GdSda.A
MaxSecureTrojan.Malware.300983.susgen
FortinetMalicious_Behavior.SB
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Win32/Injector.EPPV?

Win32/Injector.EPPV removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment