Risk

RiskTool.Win32.FlyStudio.bvbu malicious file

Malware Removal

The RiskTool.Win32.FlyStudio.bvbu is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What RiskTool.Win32.FlyStudio.bvbu virus can do?

  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
www.baidu.com
a.tomx.xyz

How to determine RiskTool.Win32.FlyStudio.bvbu?


File Info:

crc32: 05F01580
md5: c3e7eb94070a326ba6fdeaf7c15a8be7
name: abuiabblgaag5qbx6auonmwvpam
sha1: a288a4cd54bf6b43acf07e1d85c5715b8938e9d4
sha256: 1b6d2e69813110743765ce2fc36f9deb464f06e1c0f88d2bb1055adea64cef33
sha512: 97154eb287b62fdf5552ef9624ab1b99e95b0d3f719616a7a3789be8991496834c3223edffd59917de4452886e9bb037db40d9519d377883f86ae87c850f38fa
ssdeep: 196608:9Ewg6/6jB2BgsUDogTDslx58TAeiwIBWG3qpUJ:9Fg5j0NQoqo8TtiwIAGao
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Kx3552 Install
FileVersion: 5.10.0.3552
CompanyName: QQ582015915
Comments: Kx3552 Install
ProductName: Kx3552 Install
ProductVersion: 5.10.0.3552
FileDescription: Kx3552 Install
Translation: 0x0804 0x04b0

RiskTool.Win32.FlyStudio.bvbu also known as:

BkavW32.AIDetectVM.malware
MicroWorld-eScanTrojan.GenericKD.33582011
FireEyeGeneric.mg.c3e7eb94070a326b
McAfeeArtemis!C3E7EB94070A
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Generic.4!c
SangforMalware
BitDefenderTrojan.GenericKD.33582011
Cybereasonmalicious.d54bf6
Invinceaheuristic
CyrenW32/Trojan.IWSF-0029
APEXMalicious
AvastWin32:Malware-gen
GDataTrojan.GenericKD.33582011
Kasperskynot-a-virus:RiskTool.Win32.FlyStudio.bvbu
NANO-AntivirusRiskware.Win32.FlyStudio.ftwvrp
Ad-AwareTrojan.GenericKD.33582011
SophosGeneric PUA KC (PUA)
ComodoTrojWare.Win32.Agent.OSCF@5rs7jr
DrWebBackDoor.BlackHole.54589
TrendMicroTROJ_GEN.R002C0DDA20
McAfee-GW-EditionArtemis!Trojan
EmsisoftTrojan.GenericKD.33582011 (B)
Antiy-AVLRiskWare[RiskTool]/Win32.FlyStudio
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D2006BBB
ZoneAlarmnot-a-virus:RiskTool.Win32.FlyStudio.bvbu
MicrosoftTrojan:Win32/Tiggre!plock
ALYacTrojan.GenericKD.33582011
VBA32BScope.Trojan.Downloader
ESET-NOD32a variant of Win32/Packed.FlyStudio.AA potentially unwanted
TrendMicro-HouseCallTROJ_GEN.R002C0DDA20
RisingTrojan.Tiggre!8.ED98 (CLOUD)
eGambitPE.Heur.InvalidSig
FortinetRiskware/FlyStudio
AVGWin32:Malware-gen
CrowdStrikewin/malicious_confidence_60% (W)
MaxSecureTrojan.Malware.74774840.susgen

How to remove RiskTool.Win32.FlyStudio.bvbu?

RiskTool.Win32.FlyStudio.bvbu removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment