Malware

About “Win64/Injector.JW” infection

Malware Removal

The Win64/Injector.JW is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win64/Injector.JW virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Win64/Injector.JW?


File Info:

name: 0746B804F841668321E1.mlw
path: /opt/CAPEv2/storage/binaries/f7df5d7df7d08fa2b60080eed1057bc1d46b555b4a5b0674300b38a533604f64
crc32: 60D645B9
md5: 0746b804f841668321e1ca2bbdb947f7
sha1: 388e680fcf63bae6a1db8749f9487968a07da063
sha256: f7df5d7df7d08fa2b60080eed1057bc1d46b555b4a5b0674300b38a533604f64
sha512: 3ff3a97c26847e47fbb9939d0467fcab40fcf707b210d736c6c234974d94492c519ef3659927a5f43228c86183f699d087fd1a8fdbaa92bb4b9b83f494cf3042
ssdeep: 768:HE1t783bgSAoiQZOytfuaEL+YBNExcVAJp:k1Ve3Wac+YBamV
type: PE32+ executable (console) x86-64, for MS Windows
tlsh: T193731B16B2D720B3D436C27999960226B6707028037A27EB03C5897D5F637E8BF7D786
sha3_384: f19e2d9652f0eb9c4eaf30f32fbbe59bcebe35039c0add53793b758569eae47e07b7e90b1ff6e7afa3f0b890c1ccfdbd
ep_bytes: e9833a0000e96e580000e9d9700000e9
timestamp: 2022-10-11 09:32:18

Version Info:

0: [No Data]

Win64/Injector.JW also known as:

LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanTrojan.GenericKD.62998399
FireEyeTrojan.GenericKD.62998399
McAfeeArtemis!0746B804F841
CylanceUnsafe
VIPRETrojan.GenericKD.62998399
SangforTrojan.Win64.Injector.Vkol
K7AntiVirusTrojan ( 00599d771 )
K7GWTrojan ( 00599d771 )
CrowdStrikewin/malicious_confidence_90% (D)
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win64/Injector.JW
TrendMicro-HouseCallTROJ_GEN.R002H09JO22
BitDefenderTrojan.GenericKD.62998399
AvastWin64:InjectorX-gen [Trj]
TencentWin32.Trojan.Inject.Pcnw
Ad-AwareTrojan.GenericKD.62998399
EmsisoftTrojan.GenericKD.62998399 (B)
F-SecureTrojan.TR/Injector.hrlaw
ZillyaTrojan.Injector.Win64.3773
McAfee-GW-EditionArtemis!Trojan
SophosMal/Generic-S
IkarusTrojan.Win64.Rozena
GDataTrojan.GenericKD.62998399
GoogleDetected
AviraTR/Injector.hrlaw
MAXmalware (ai score=89)
Antiy-AVLTrojan/Win32.SGeneric
ArcabitTrojan.Generic.D3C1477F
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Malware/Win.Malware-gen.C5140901
ALYacTrojan.GenericKD.62998399
MalwarebytesTrojan.Injector
APEXMalicious
RisingTrojan.Injector!8.C4 (CLOUD)
FortinetPossibleThreat.PALLAS.H
AVGWin64:InjectorX-gen [Trj]
PandaTrj/Chgt.AD

How to remove Win64/Injector.JW?

Win64/Injector.JW removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment