Malware

Win32/Injector.SEX removal

Malware Removal

The Win32/Injector.SEX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.SEX virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Win32/Injector.SEX?


File Info:

name: 50A94ED258299D615EC8.mlw
path: /opt/CAPEv2/storage/binaries/cc9c0abab0437a4f754e37f147fbc2e33d46d3c5157d984f370c26f0fa29c20a
crc32: 23FD4B14
md5: 50a94ed258299d615ec83d81bffd1ef0
sha1: 0be2536f47ed633571fe98b6de80c04e0c2035c3
sha256: cc9c0abab0437a4f754e37f147fbc2e33d46d3c5157d984f370c26f0fa29c20a
sha512: e147ec826e3b2e900f26d0067d441d5f3a7392d8668c5243e7c8bba9d40a593b2b9174c66d6603538615444d4cb4ba05f1de61ee1d39cbfdd7a18fe8c687c319
ssdeep: 24576:ZN50u/OUZW8kGQzm0Dztcz/euO2vX8aBh1do3TEoTLWg/vo7Yx:qg7qDztcz/O2ka/DFE/
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1964512EFA008B20DE1DEBBB7C05129401B84E96C4777EB57B942995343779BCB5A202F
sha3_384: 0dedd3a24e53e2c6e5d7f4381cffabc315330afa2f663b3626545891f6baf7c5752847492ac8586334eb4ca4071ce39a
ep_bytes: 60be00706c008dbe00a0d3ff5783cdff
timestamp: 2013-03-14 02:54:18

Version Info:

ProductName: WinRAR
CompanyName: Alexander Roshal
FileDescription: WinRAR archiver
FileVersion: 3.91.0
InternalName: WinRAR
LegalCopyright: Copyright © Alexander Roshal 1993-2009
OriginalFilename: WinRAR.exe

Win32/Injector.SEX also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Heur.PonyStealer.MLT.1
FireEyeGeneric.mg.50a94ed258299d61
ALYacGen:Heur.PonyStealer.MLT.1
CylanceUnsafe
AlibabaTrojan:Win32/Injector.7c2cb48c
Cybereasonmalicious.258299
BitDefenderThetaGen:NN.ZevbaF.34698.jnKfaquBcUgO
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Injector.SEX
TrendMicro-HouseCallTROJ_GEN.R03BC0RJ122
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Heur.PonyStealer.MLT.1
NANO-AntivirusTrojan.Win32.Inject.cjijua
SUPERAntiSpywareTrojan.Agent/Gen-Multali
TencentWin32.Trojan.Generic.Lcnw
Ad-AwareGen:Heur.PonyStealer.MLT.1
EmsisoftGen:Heur.PonyStealer.MLT.1 (B)
ComodoMalware@#2vbzwwz699xqo
VIPREGen:Heur.PonyStealer.MLT.1
TrendMicroTROJ_GEN.R03BC0RJ122
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
Trapminemalicious.high.ml.score
SophosMal/VBCheMan-C
SentinelOneStatic AI – Suspicious PE
WebrootW32.Malware.Gen
GoogleDetected
AviraTR/Dropper.Gen
MAXmalware (ai score=99)
Antiy-AVLTrojan/Generic.ASMalwS.24D
KingsoftWin32.Troj.Generic.a.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Heur.PonyStealer.MLT.1
CynetMalicious (score: 99)
McAfeeArtemis!50A94ED25829
MalwarebytesMalware.Heuristic.1003
APEXMalicious
RisingDropper.Generic!8.35E (CLOUD)
YandexTrojan.Injector!LUmzydjjvEI
IkarusGen:Variant
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/VBCheMan.C
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Win32/Injector.SEX?

Win32/Injector.SEX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment