The Trojan.VBCryptVMF.S23809708 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.
![GridinSoft Anti-Malware](https://i2.wp.com/adwareremoval.info/wp-content/uploads/2019/11/AM-box-200.png?w=810&ssl=1)
Gridinsoft Anti-Malware
Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
What Trojan.VBCryptVMF.S23809708 virus can do?
- Sample contains Overlay data
- Unconventionial binary language: Chinese (Simplified)
- Unconventionial language used in binary resources: Chinese (Simplified)
- Authenticode signature is invalid
- Anomalous binary characteristics
How to determine Trojan.VBCryptVMF.S23809708?
File Info:
name: A86987BE4BC212527FDF.mlwpath: /opt/CAPEv2/storage/binaries/c1e72babcfffc39a94b4d809500ad85823e9dadd1a3a993c5c3b49a7d4b1128bcrc32: 1C5D3C66md5: a86987be4bc212527fdf14a232ec547csha1: 098437bd305f6ca7c8df8bc8d5acdc927b7fbc2asha256: c1e72babcfffc39a94b4d809500ad85823e9dadd1a3a993c5c3b49a7d4b1128bsha512: 6996d0ca421f2398ca143c86483fee11b43e5e50e8e5d5118dd0136631c3eb3166c6873fa07dc7e1a58ff77da657eedca1cb903b8d5f8547bc12226ccd29c411ssdeep: 6144:m96w34/MUED7QrST5dFye5EdUerc3KTZSP7H6WW:PwI0UKkrSddMe5ENHTZOH6WWtype: PE32 executable (GUI) Intel 80386, for MS Windowstlsh: T1EC94523A5878922BD1AAC6B58FF08427F410A93F79437C6776C3974A0623D43B5D722Esha3_384: 2a040891e357544c6850edf8c4bb0e97cdf8960d43e1915593c8c9532f6b7c8ef0a5a7101316b2e00ee95e387dd3f80bep_bytes: 6860564000e8eeffffff000048000000timestamp: 2013-02-25 06:03:18Version Info:
Translation: 0x0804 0x04b0Comments: Flash678儿童故事 www.flash678.com 安装包CompanyName: Flash678儿童故事 www.flash678.comFileDescription: Flash678儿童故事update 是由flash678.com公司精心研制的作品,其中包含的儿童故事资源十分丰富,囊括整个互联网的优秀儿童故事以及儿童教育资源,小至几个月大到10几岁的儿童内容适用,是家长们早教的必备产品LegalCopyright: by:Flash678.comProductName: Flash678儿童故事安装包FileVersion: 1.00ProductVersion: 1.00InternalName: BabyPlayInstOriginalFilename: BabyPlayInst.exe
Trojan.VBCryptVMF.S23809708 also known as:
FireEye | Generic.mg.a86987be4bc21252 |
CAT-QuickHeal | Trojan.VBCryptVMF.S23809708 |
McAfee | Artemis!A86987BE4BC2 |
CrowdStrike | win/malicious_confidence_70% (W) |
APEX | Malicious |
Cynet | Malicious (score: 100) |
DrWeb | Trojan.Siggen7.42134 |
McAfee-GW-Edition | BehavesLike.Win32.Autorun.gm |
Trapmine | suspicious.low.ml.score |
Sophos | ML/PE-A |
Ikarus | Hoax.Win32.Agent |
Antiy-AVL | Trojan/Win32.Tgenic |
Detected | |
Rising | Trojan.Win32.Generic.142A3C13 (C64:YzY0Orl7rTL+h+2J) |
SentinelOne | Static AI – Suspicious PE |
Cybereason | malicious.d305f6 |
DeepInstinct | MALICIOUS |
How to remove Trojan.VBCryptVMF.S23809708?
- Download and install GridinSoft Anti-Malware.
- Open GridinSoft Anti-Malware and perform a “Standard scan“.
- “Move to quarantine” all items.
- Open “Tools” tab – Press “Reset Browser Settings“.
- Select proper browser and options – Click “Reset”.
- Restart your computer.
Leave a Comment