Trojan

Trojan.Vundo removal

Malware Removal

The Trojan.Vundo is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Vundo virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Vundo?


File Info:

crc32: 6E30DC7B
md5: 32522d2366e515bc377bcd90198cb004
name: 32522D2366E515BC377BCD90198CB004.mlw
sha1: 5de021a48734eaac3efe27fb636b6e2733e8ae1d
sha256: 2beb55cab727a1219c9f9ef4256f995d8aa8f1878a239e6eb2c0fa726c9a13b7
sha512: 8868023f68ebe98e8e695915443479dd0d69b94197e1c278095a8c914b57075fcaf7c98e0223ee780f877be99a797c6ef77883742f58f7143e2e38e9af6630ce
ssdeep: 1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxeALxNDoZ3oYUCD7R2F2UVbyy0NEe:ymb3NkkiQ3mdBEFoZ3HUoMsAbro
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Vundo also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.679441
FireEyeGeneric.mg.32522d2366e515bc
Qihoo-360HEUR/QVM19.1.57EA.Malware.Gen
McAfeeGenericRXAA-AA!32522D2366E5
CylanceUnsafe
SangforMalware
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Variant.Razy.679441
K7GWRiskware ( 0040eff71 )
CrowdStrikewin/malicious_confidence_100% (D)
InvinceaMal/Generic-S
CyrenW32/BlackMoon.P.gen!Eldorado
SymantecTrojan Horse
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Malware.Midie-9733344-0
KasperskyHEUR:Trojan.Win32.Generic
RisingTrojan.Agent!1.B82B (CLASSIC)
Ad-AwareGen:Variant.Razy.679441
EmsisoftGen:Variant.Razy.679441 (B)
ComodoBackdoor.Win32.Agent.BVX@8hj67l
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.Inject1.58305
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
SophosMal/Generic-S
IkarusWorm.Win32.Ganelp
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=86)
MicrosoftWorm:Win32/Ganelp
ArcabitTrojan.Razy.DA5E11
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Razy.679441
CynetMalicious (score: 100)
AhnLab-V3Malware/RL.Generic.R256000
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34634.hiZ@ai09iRm
ALYacGen:Variant.Razy.679441
VBA32BScope.Trojan.Dynamer
MalwarebytesTrojan.Vundo
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/GenKryptik.CZVL
TencentMalware.Win32.Gencirc.10b07709
YandexTrojan.GenAsa!+V7EyyfQ22g
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_95%
FortinetW32/GenKryptik.CZVL!tr
AVGWin32:Malware-gen
MaxSecureTrojan.Malware.300983.susgen

How to remove Trojan.Vundo?

Trojan.Vundo removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment