Malware

Win32/Injector.ESDU removal instruction

Malware Removal

The Win32/Injector.ESDU is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.ESDU virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Win32/Injector.ESDU?


File Info:

name: E07AD58F7653C9AC08D5.mlw
path: /opt/CAPEv2/storage/binaries/d04a316b0777596736648a07668d994c71a244fcc226c56f09551509ec29bbe2
crc32: CF3E7784
md5: e07ad58f7653c9ac08d5f6208ca408b1
sha1: 7cbeeb44b2691fd414b652075f592b927a43650e
sha256: d04a316b0777596736648a07668d994c71a244fcc226c56f09551509ec29bbe2
sha512: 67fc054bd996b0d65e2ad671a589a20dd20df7f1f99a48c39baff40ad9e84e017ea35e607a506de0fdc1128bc1453a2788bc2f4dd84d3f35b0e424bc13ab768b
ssdeep: 3072:JCsPEvMCi32nCnQCs0Jlt/TRgzOwwL0LSAQ1i3VDH:J9PkKu70JPFgzoKH
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T157D39E5131C2907FD972A97155688AE0C9AFFB212E548FDB634C253ECE382A14737D2B
sha3_384: af01d37cce04238d5c2b250f31f013eb32fca87a0ea5408dcf8be2fdd190aa7673aac5aa5c32e1d63b3f8c5656df8431
ep_bytes: e86d020000e988feffff558bec8b4508
timestamp: 2022-10-14 07:19:16

Version Info:

0: [No Data]

Win32/Injector.ESDU also known as:

BkavW32.AIDetect.malware2
SangforTrojan.Win32.Save.a
BitDefenderThetaGen:NN.ZexaF.34726.iyW@a8Lishii
CyrenW32/Ninjector.GA.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Injector.ESDU
APEXMalicious
KasperskyVHO:Trojan.Win32.Sdum.gen
CynetMalicious (score: 100)
AvastRATX-gen [Trj]
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GoogleDetected
RisingTrojan.Injector!8.C4 (TFE:5:LYHrbeQQU0G)
SentinelOneStatic AI – Suspicious PE
AVGRATX-gen [Trj]

How to remove Win32/Injector.ESDU?

Win32/Injector.ESDU removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment