Trojan

Trojan.Vundo.Gen.3 removal

Malware Removal

The Trojan.Vundo.Gen.3 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Vundo.Gen.3 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan.Vundo.Gen.3?


File Info:

name: B6AA6B9FB98175E24303.mlw
path: /opt/CAPEv2/storage/binaries/0187c2e16464183b400d38386f8ff76e6705ed06a720f077e4c824ddab085cfe
crc32: C4F870EE
md5: b6aa6b9fb98175e243036d4277732c5f
sha1: d26190c8e32dcafd6f8ab9bd929eb96cd1f19b69
sha256: 0187c2e16464183b400d38386f8ff76e6705ed06a720f077e4c824ddab085cfe
sha512: 94f9527f87fef371caee97e2e792be46ac65c67641c3df31f502f0dd4a20ac74d3fb286c6987094dc42065d61d6e6ed7247f8e83b3d18b532b53eb6cd329a7fc
ssdeep: 6144:nhTA8+6SOGJ34y/aY0D/kHHtGYehcSMCnyJBZA2kyTYeNN:hTL+6SOkoy/bLHtGYbVA2HrN
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1D2642395F95848CFDE63887E24020A7CA43FE92D0D3AA460DDF3BE553764D6E1D0682B
sha3_384: 2b6ebc195f11051a27f32b273cd17fda285663561c0b51e84acc6ad3bb0a8327804716033d2e46a9f7decaa86300485d
ep_bytes: 50eb12424145464341484545444c4141
timestamp: 2004-04-14 08:03:16

Version Info:

0: [No Data]

Trojan.Vundo.Gen.3 also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.Vundo.Gen.3
FireEyeGeneric.mg.b6aa6b9fb98175e2
SkyhighBehavesLike.Win32.RAHack.fc
McAfeevundo!hv.p
ZillyaTrojan.Monder.Win32.5808
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 00521e9b1 )
AlibabaTrojan:Win32/Kryptik.5d9e2018
K7GWTrojan ( 00521e9b1 )
CrowdStrikewin/malicious_confidence_90% (D)
BitDefenderThetaAI:Packer.F0C821CA1E
VirITTrojan.Win32.Vundo.FJ
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.XN
APEXMalicious
TrendMicro-HouseCallMal_Vundo-24
ClamAVWin.Trojan.Vundo-11567
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Vundo.Gen.3
NANO-AntivirusTrojan.Win32.Monder.vpoji
AvastWin32:Evo-gen [Trj]
SophosTroj/Virtum-Gen
F-SecureTrojan.TR/ATRAPS.Gen2
VIPRETrojan.Vundo.Gen.3
TrendMicroMal_Vundo-24
EmsisoftTrojan.Vundo.Gen.3 (B)
SentinelOneStatic AI – Suspicious PE
GDataTrojan.Vundo.Gen.3
JiangminPacked.PE-Encrypt.c
VaristW32/Virtumonde.AR.gen!Eldorado
AviraTR/ATRAPS.Gen2
MAXmalware (ai score=98)
Antiy-AVLTrojan[Packed]/Win32.Krap
Kingsoftmalware.kb.a.1000
XcitiumMalCrypt.Indus!@1qrzi1
ArcabitTrojan.Vundo.Gen.3
ViRobotTrojan.Win32.A.Monder.318976
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojan:Win32/Virtumonde.M
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Vundo.R10346
VBA32BScope.Trojan.Packed
ALYacTrojan.Vundo.Gen.3
TACHYONTrojan/W32.Monder.318976.C
Cylanceunsafe
RisingTrojan.Conhook!8.10E9 (TFE:1:CuCFS7DWZdM)
YandexTrojan.GenAsa!F+FaNbFFC1w
IkarusPacker.Win32.Krap
FortinetW32/Agent.NO!tr
AVGWin32:Evo-gen [Trj]
PandaTrj/Genetic.gen
alibabacloudTrojan:Win/Vundo.Gen

How to remove Trojan.Vundo.Gen.3?

Trojan.Vundo.Gen.3 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment