Malware

Win32/Injector.EPRT removal guide

Malware Removal

The Win32/Injector.EPRT is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.EPRT virus can do?

  • Reads data out of its own binary image
  • A process created a hidden window
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/Injector.EPRT?


File Info:

crc32: 6004E376
md5: 86494bc0ef5f71fa7364129fa22a9a8f
name: 86494BC0EF5F71FA7364129FA22A9A8F.mlw
sha1: ec16437abe4696eea2234ced91bc8f8ac6f61329
sha256: 0c6be7aa9d02dd6545c3e18913e5a89c7cb96bfe79875c1a6c4aeea632a9c9ee
sha512: 6c100197db77a65f0bd27c3891cdc922605c19febfff2f113216ee3a4bde13547b6fde0b9022ee0e42a4e34344097fb4497c48d2d4792f7d8fbda6338c0ef3f6
ssdeep: 3072:hDxaVzwmg4CSW8JSuQbLG5UfH+hbf+XsFzMN/SkIwx3zxLUx+u2fF5qpirjwTeeV:xMm4CCAy5Uv+5/F7ktoUD2Cbe0Sus
type: PE32 executable (GUI) Intel 80386, for MS Windows, Nullsoft Installer self-extracting archive

Version Info:

0: [No Data]

Win32/Injector.EPRT also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
CrowdStrikewin/malicious_confidence_60% (D)
BitDefenderZum.Androm.1
Cybereasonmalicious.0ef5f7
CyrenW32/Injector.AIY.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.EPRT
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-PSW.Win32.Stealer.gen
MicroWorld-eScanZum.Androm.1
SophosGeneric ML PUA (PUA)
McAfee-GW-EditionBehavesLike.Win32.ICLoader.dc
FireEyeGeneric.mg.86494bc0ef5f71fa
EmsisoftZum.Androm.1 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1141442
MicrosoftProgram:Win32/Wacapew.C!ml
GDataZum.Androm.1
MAXmalware (ai score=83)
FortinetW32/Injector.EOZI!tr

How to remove Win32/Injector.EPRT?

Win32/Injector.EPRT removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment