Trojan

Trojan.Vflooder.P.mue removal tips

Malware Removal

The Trojan.Vflooder.P.mue is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Vflooder.P.mue virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (3 unique times)
  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Likely virus infection of existing system binary
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

vtboss.yolox.net
www.virustotal.com
ddos.dnsnb8.net

How to determine Trojan.Vflooder.P.mue?


File Info:

crc32: 178F84BD
md5: e95efc6e180dcdc5a725f704ad0292a1
name: E95EFC6E180DCDC5A725F704AD0292A1.mlw
sha1: 57f3590af65f8f5c7f8775aa1249240ed4dfd058
sha256: 5b428d87c53b3d44e1e0ad099ff8bb06b3c8538bc923ce82649a98e3b312b19e
sha512: 0d216d55b316f282339d723f2fcfde51fd297235290c657b08c4aff8b3ac412b99517c0ab1e2ffa1bccdd1fb846d4ebe731bd3bee9fd2e26a8029f996cbfdf2e
ssdeep: 768:Xd5u7mNGtyVfhAPlQGPL4vzZq2oZ7GTxzlwr:Xd5z/fhgCGCq2w72
type: MS-DOS executable, MZ for MS-DOS

Version Info:

0: [No Data]

Trojan.Vflooder.P.mue also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Flood.22061
MicroWorld-eScanWin32.VJadtre.3
FireEyeGeneric.mg.e95efc6e180dcdc5
CAT-QuickHealTrojan.Vflooder.P.mue
McAfeeW32/Kudj
CylanceUnsafe
VIPREVirus.Win32.Small.acea (v)
SangforMalware
K7AntiVirusVirus ( 0040f7441 )
BitDefenderWin32.VJadtre.3
K7GWVirus ( 0040f7441 )
Cybereasonmalicious.e180dc
TrendMicroPE_WAPOMI.BM
BitDefenderThetaAI:FileInfector.991137D00F
CyrenW32/PatchLoad.E
SymantecW32.Wapomi.C!inf
TotalDefenseWin32/Nimnul.A
APEXMalicious
ClamAVWin.Malware.Vtflooder-6260355-1
KasperskyVirus.Win32.Nimnul.f
NANO-AntivirusTrojan.Win32.Banload.cstqaj
ViRobotWin32.Ramnit.F
AvastWin32:Malware-gen
TencentVirus.Win32.Loader.aab
Ad-AwareWin32.VJadtre.3
TACHYONVirus/W32.Ramnit.C
EmsisoftWin32.VJadtre.3 (B)
ComodoVirus.Win32.Wali.KA@558nxg
F-SecureMalware.W32/Jadtre.B
BaiduWin32.Virus.Otwycal.d
ZillyaVirus.Nimnul.Win32.5
InvinceaML/PE-A + W32/Nimnul-A
McAfee-GW-EditionBehavesLike.Win32.Generic.mh
SophosW32/Nimnul-A
IkarusTrojan.Win32.Tiggre
MaxSecureVirus.Nimnul.F
AviraW32/Jadtre.B
MicrosoftVirus:Win32/Mikcer.B
GridinsoftTrojan.Win32.Gen.sm!s1
ArcabitWin32.VJadtre.3
ZoneAlarmVirus.Win32.Nimnul.f
GDataWin32.VJadtre.3
CynetMalicious (score: 100)
AhnLab-V3Win32/VJadtre.Gen
Acronissuspicious
VBA32SScope.Trojan.Flooder.4614
ALYacWin32.VJadtre.3
MAXmalware (ai score=80)
ZonerVirus.Win32.23755
ESET-NOD32a variant of Win32/Flooder.Agent.NAS
TrendMicro-HouseCallPE_WAPOMI.BM
RisingTrojan.Patched!1.A9BE (CLASSIC)
YandexPacked/MPress
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/Cerbu.207!tr
AVGWin32:Malware-gen
PandaW32/Pcarrier.A
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360Virus.Win32.Agent.P

How to remove Trojan.Vflooder.P.mue?

Trojan.Vflooder.P.mue removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment