Malware

Win32/Injector.EPXU removal guide

Malware Removal

The Win32/Injector.EPXU is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.EPXU virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/Injector.EPXU?


File Info:

crc32: 43B72100
md5: d07ea7cdad0487bb7bc0cd64330a89f3
name: D07EA7CDAD0487BB7BC0CD64330A89F3.mlw
sha1: 93cef7b5767f493612601e0d0633247afd37f8a6
sha256: 8bef4e95bce87f7580bd453b8e4ef5a434d1587d9bb98a2b550154349c92b612
sha512: 4f47a9b8fdf4a8174a9810ac16c502175e003d47b881ffea41776f9c1919f26e7208e880eea485a678846fa5296116fd134ed9cb1bdd86d2349bd73987d418f4
ssdeep: 3072:S67xyu1EPgm3zXf1q699t5bF2z7yhkHa6Zt29mAk+TGc4:SuxX63f1f9t5p5h2a6ZeL3
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: Societa
FileVersion: 1.04
Comments: bipVU
ProductName: Bivuakk4
ProductVersion: 1.04
FileDescription: bipVU
OriginalFilename: Societa.exe

Win32/Injector.EPXU also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (D)
Cybereasonmalicious.5767f4
ESET-NOD32a variant of Win32/Injector.EPXU
APEXMalicious
CynetMalicious (score: 100)
KasperskyUDS:Trojan.Win32.Mucc
F-SecureTrojan.TR/Dropper.Gen
BitDefenderThetaGen:NN.ZevbaF.34058.wm0@a8UfNnpi
FireEyeGeneric.mg.d07ea7cdad0487bb
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.Gen
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:Win32/Caynamer.A!ml
ZoneAlarmUDS:DangerousObject.Multi.Generic
IkarusVirus.Win32.VBInject
MaxSecureTrojan.Malware.300983.susgen
Paloaltogeneric.ml
Qihoo-360HEUR/QVM03.0.341B.Malware.Gen

How to remove Win32/Injector.EPXU?

Win32/Injector.EPXU removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment