Malware

What is “Win32/Injector.EQPC”?

Malware Removal

The Win32/Injector.EQPC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.EQPC virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Dynamic (imported) function loading detected
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Network activity detected but not expressed in API logs

Related domains:

wpad.local-net

How to determine Win32/Injector.EQPC?


File Info:

name: E70022C5636DB76B71C8.mlw
path: /opt/CAPEv2/storage/binaries/0226b26f82ea7ab25ad85a4cfda530f7b28f91b1d57f8ca0361b7b03e8ce59bb
crc32: C3600AD8
md5: e70022c5636db76b71c8b2c56552c60c
sha1: 4589b37f02bb95d26bb2ba369c46c99268ce2985
sha256: 0226b26f82ea7ab25ad85a4cfda530f7b28f91b1d57f8ca0361b7b03e8ce59bb
sha512: d9d16ded54f7424145aba6f423b82ab4c010cc1ee67acb152a1d79b61f23fedc9250dd482b78e3c84ac4b82cdc9283099a06ee5a2d5d14d34e78734f60dd7f61
ssdeep: 1536:tGs2yzOSOXbgSXZXMyETdwDgL/UQdz+mehpITwHM/kho:tGOzvOXbgSXZXA2Dk/UQHehiTMM8o
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T119834B1138183901DBFB59F20E4A6590EFF1AFF91B02552A0089E93B5AB4457F7ED32B
sha3_384: 881b5a3fda4fe8cd8f1fc6f4fa575164f3b1702f6785e43aa9436179690106b589930c4d7a95bf816c7579ec8fe1963f
ep_bytes: 68d4214000e8eeffffff000000000000
timestamp: 2010-11-10 09:28:09

Version Info:

Translation: 0x0409 0x04b0
CompanyName: SillyCame
FileDescription: SillyCame
ProductName: SillyCame
FileVersion: 6.00
ProductVersion: 6.00
InternalName: Chalybes
OriginalFilename: Chalybes.exe

Win32/Injector.EQPC also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Agentb.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.38099865
FireEyeTrojan.GenericKD.38099865
CAT-QuickHealTrojan.IGENERIC
McAfeeRDN/GuLoader
MalwarebytesTrojan.MalPack.VB
ZillyaTrojan.Agent.Win32.2571285
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Injector.da535423
K7GWTrojan ( 0058acdc1 )
K7AntiVirusTrojan ( 0058acdc1 )
ArcabitTrojan.Generic.D2455B99
BitDefenderThetaGen:NN.ZevbaF.34062.fm0@aCJYO9ai
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win32/Injector.EQPC
TrendMicro-HouseCallTROJ_FRS.0NA103KQ21
KasperskyTrojan.Win32.Agentb.kpoq
BitDefenderTrojan.GenericKD.38099865
AvastWin32:Trojan-gen
Ad-AwareTrojan.GenericKD.38099865
EmsisoftTrojan.GenericKD.38099865 (B)
ComodoTrojWare.Win32.Agent.iabhm@0
DrWebTrojan.Inject4.20494
TrendMicroTROJ_FRS.0NA103KQ21
McAfee-GW-EditionRDN/GuLoader
SophosMal/Generic-S
APEXMalicious
JiangminTrojan.Agentb.kvj
MaxSecureTrojan.Malware.300983.susgen
AviraTR/Injector.elvns
Antiy-AVLTrojan/Generic.ASMalwS.34D8059
KingsoftWin32.Troj.Generic_a.a.(kcloud)
GridinsoftTrojan.Win32.Downloader.sa
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ViRobotTrojan.Win32.Z.Agent.81920.GPW
GDataTrojan.GenericKD.38099865
CynetMalicious (score: 99)
VBA32BScope.Trojan.Vebzenpak
ALYacTrojan.GenericKD.38099865
MAXmalware (ai score=99)
YandexTrojan.Agentb!VNVWYjiAhnI
SentinelOneStatic AI – Suspicious PE
eGambitUnsafe.AI_Score_75%
FortinetW32/EQPC!tr
WebrootW32.Trojan.Gen
AVGWin32:Trojan-gen
PandaTrj/GdSda.A

How to remove Win32/Injector.EQPC?

Win32/Injector.EQPC removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment