Malware

Win32/Injector.ESSM removal instruction

Malware Removal

The Win32/Injector.ESSM is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.ESSM virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Win32/Injector.ESSM?


File Info:

name: 1AB2EDAD276614B938A9.mlw
path: /opt/CAPEv2/storage/binaries/5b97a4798a032d4733170953de396eeeea55e92e50eff510361c2e5925bbdea9
crc32: CCFF4C16
md5: 1ab2edad276614b938a9d663ef1b0d0e
sha1: dbed4e2d1a4ab2809f7dd59d81b11a7de526be1f
sha256: 5b97a4798a032d4733170953de396eeeea55e92e50eff510361c2e5925bbdea9
sha512: dbb965596c2fc05673f7c3f8f21ffe2d26a4d7b2aa8d2b837c07bf2ea2cd1764df75e711c90410c90bb8a028242b0e6fc6d99b6958785b19e847a7762afbf54e
ssdeep: 24576:9wqVlJOoS1o62pLmeA5tWlZSF+NWl98uK:+q3JOo23cLbOtWlEyv
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1D5E59E2BF8D1B930FFA10975CCD1645E6E5AB99406A372F74620798BBDE34C9073980B
sha3_384: 7c3aa2ef4ad27354d4d1d38c04174462f7932c36de94e0ae634ae233690a7a5f657f9ec8d8e568939eacf9e483fdeb3b
ep_bytes: e804060000e974feffff558bec8b4508
timestamp: 2023-05-05 19:42:33

Version Info:

0: [No Data]

Win32/Injector.ESSM also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
SangforTrojan.Win32.Save.a
CyrenW32/Stealer.DQ.gen!Eldorado
ESET-NOD32a variant of Win32/Injector.ESSM
APEXMalicious
KasperskyVHO:Trojan.Win32.Strab.gen
AvastWin32:PWSX-gen [Trj]
RisingTrojan.Generic@AI.100 (RDML:fOPJuxQLf496dRE8iuR8Dw)
F-SecureHeuristic.HEUR/AGEN.1353000
McAfee-GW-EditionBehavesLike.Win32.Generic.wz
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.1ab2edad276614b9
SophosGeneric ML PUA (PUA)
IkarusTrojan-Spy.TitanStealer
GoogleDetected
AviraHEUR/AGEN.1353000
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ZoneAlarmVHO:Trojan.Win32.Strab.gen
CynetMalicious (score: 100)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Injector.ESSM!tr
BitDefenderThetaGen:NN.ZexaF.36196.iFW@auCYgxg
AVGWin32:PWSX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/grayware_confidence_70% (D)

How to remove Win32/Injector.ESSM?

Win32/Injector.ESSM removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment