Malware

What is “Troj/VB-JVT”?

Malware Removal

The Troj/VB-JVT is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Troj/VB-JVT virus can do?

  • Executable code extraction
  • Reads data out of its own binary image
  • Creates a hidden or system file
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Troj/VB-JVT?


File Info:

crc32: CDCF978E
md5: 8011e1a95231fa6df09a8dfa9b9dfbfe
name: Dofus.exe
sha1: d3c37a6554cd9e4990b4543663031cb426b3d5ed
sha256: 5576bd9f0e2506cb8e01f6b134b6535f68fbb837a28820ac18aadb26e531935b
sha512: e0143fd3534ebd95d73db3456ee1e2e07deca0e831c3d9efb9d230c6a97ea90ee98eb5e433a994f789d1025f4ee403714fed5301246c06b7bf6898df0bd534a8
ssdeep: 6144:FvEN2U+T6i5LirrllHy4HUcMQY63xbThVcH5ggggggggggggggggggggggggggg6:lENN+T5xYrllrU7QY6dThzgCsreUCee4
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: Win
FileVersion: 1.00
CompanyName: Microsoft
ProductName: Win
ProductVersion: 1.00
OriginalFilename: Win.exe

Troj/VB-JVT also known as:

BkavW32.VB.Swisyn.PE
MicroWorld-eScanTrojan.GenericKD.32322992
FireEyeGeneric.mg.8011e1a95231fa6d
Qihoo-360HEUR/QVM03.0.F2A4.Malware.Gen
McAfeeW32/Swisyn.ag
CylanceUnsafe
VIPRETrojan-PWS.Win32.VB.cu (v)
SangforMalware
K7AntiVirusTrojan ( 0040f0591 )
BitDefenderTrojan.GenericKD.32322992
K7GWTrojan ( 0040f0591 )
Cybereasonmalicious.95231f
TrendMicroPE_MOFKSYS.A
BaiduWin32.Trojan.VB.at
F-ProtW32/Mofksys.A.gen!Eldorado
SymantecW32.Gosys
TotalDefenseWin32/VB.BOP
APEXMalicious
AvastWin32:VB-AJKP [Trj]
ClamAVWin.Virus.Sality:1-6335700-1
GDataTrojan.GenericKD.32322992
KasperskyTrojan.Win32.Swisyn.bner
AlibabaTrojanPSW:Win32/Swisyn.dd1fc379
NANO-AntivirusTrojan.Win32.Swisyn.efyboj
TencentTrojan.Win32.Swisyn.f
Endgamemalicious (high confidence)
EmsisoftTrojan.GenericKD.32322992 (B)
ComodoTrojWare.Win32.VB.OSKB@4pc2ok
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.Siggen6.54687
ZillyaTrojan.Swisyn.Win32.32298
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Swisyn.gh
Trapminemalicious.high.ml.score
CMCTrojan.Win32.Swisyn!O
SophosTroj/VB-JVT
IkarusTrojan-Spy.MSIL.Omaneat
CyrenW32/Mofksys.A.gen!Eldorado
JiangminTrojan/Swisyn.rmj
WebrootW32.Trojan.Swisyn
AviraTR/Dropper.Gen
MAXmalware (ai score=87)
Antiy-AVLTrojan/Win32.Swisyn.bner
ArcabitTrojan.Generic.D1ED35B0
ZoneAlarmTrojan.Win32.Swisyn.bner
MicrosoftPWS:Win32/VB.CU
AhnLab-V3Trojan/Win32.Swisyn.R192813
Acronissuspicious
VBA32MAS.Trojan.VB.01049
ALYacTrojan.GenericKD.32322992
Ad-AwareTrojan.GenericKD.32322992
MalwarebytesTrojan.VBCrypt
PandaGeneric Malware
ZonerTrojan.Win32.47063
ESET-NOD32Win32/VB.OSK
TrendMicro-HouseCallPE_MOFKSYS.A
RisingTrojan.QOT!1.6519 (CLOUD)
YandexTrojan.VBGent.Gen.471
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/Swisyn.BNER!tr
BitDefenderThetaAI:Packer.DCE40FF221
AVGWin32:VB-AJKP [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (D)
MaxSecureTrojan.Swisyn.BNER

How to remove Troj/VB-JVT?

Troj/VB-JVT removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment