Trojan

Trojan.Win32.Jorik.Vobfus.drgt removal instruction

Malware Removal

The Trojan.Win32.Jorik.Vobfus.drgt is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Jorik.Vobfus.drgt virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Behavioural detection: Injection (inter-process)
  • Attempts to disable Windows Auto Updates
  • Attempts to modify Explorer settings to prevent hidden files from being displayed

How to determine Trojan.Win32.Jorik.Vobfus.drgt?


File Info:

name: 62AADAC763C023F57360.mlw
path: /opt/CAPEv2/storage/binaries/3c522177d2da544d2683c30ac11ffd4f5a15810321e11e86d4a607dee71a39a9
crc32: A791041C
md5: 62aadac763c023f57360f8d09a308277
sha1: 91ec9b5924e396cb70a2e0c90e483d0b3e602612
sha256: 3c522177d2da544d2683c30ac11ffd4f5a15810321e11e86d4a607dee71a39a9
sha512: 578f10e9c7e069458749c0154cdfdec148f5abe05385fdb1726e3c233a3e66b98cb502b7d42a7d271ea590ffd1a2314eedd02d64eab28fa633608b22738fea87
ssdeep: 1536:rpN8iAuismywsQvGLw0wF9MGM9K/oKtNgCMbA1bL3N+NM5UfONIjnZoF:PQu/KLOM5FCneF
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C4A370977F362449F96455302EF386F737E2A88D4A0B46025B2436285FEFE720D29B53
sha3_384: 8d55ad794b7d435e129556e2ea6e3edd6efdeef8d8dc0d41787de3b202d56f603b82ddde651b65705f4fa77569624aab
ep_bytes: 6818124000e8f0ffffff000000000000
timestamp: 2005-05-26 19:15:29

Version Info:

0: [No Data]

Trojan.Win32.Jorik.Vobfus.drgt also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Jorik.lvqp
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKDZ.83632
ClamAVWin.Trojan.Changeup-6169544-0
FireEyeGeneric.mg.62aadac763c023f5
CAT-QuickHealTrojan.Beebone.D
McAfeeVBObfus.dv
Cylanceunsafe
SangforSuspicious.Win32.Save.vb
K7AntiVirusEmailWorm ( 0054d10f1 )
AlibabaWorm:Win32/vobfus.1030
K7GWEmailWorm ( 0054d10f1 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZevbaF.36250.gmX@au7Pcfb
VirITTrojan.Win32.VBCrypt.EVY
CyrenW32/VBInject.CO.gen!Eldorado
SymantecW32.Changeup
ESET-NOD32Win32/AutoRun.VB.AUG
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Jorik.Vobfus.drgt
BitDefenderTrojan.GenericKDZ.83632
NANO-AntivirusTrojan.Win32.Jorik.cqkxoi
AvastWin32:VB-ACEH [Trj]
TencentWorm.Win32.Wbna.kd
TACHYONTrojan/W32.Agent.106496
EmsisoftTrojan.GenericKDZ.83632 (B)
BaiduWin32.Worm.VB.ab
F-SecureTrojan.TR/Kazy.64384
DrWebWin32.HLLW.Autoruner1.14617
VIPRETrojan.GenericKDZ.83632
TrendMicroWORM_VOBFUS_000001c.TOMA
McAfee-GW-EditionBehavesLike.Win32.VBObfus.ct
Trapminemalicious.high.ml.score
SophosW32/SillyFDC-HU
SentinelOneStatic AI – Malicious PE
GDataTrojan.GenericKDZ.83632
JiangminTrojan/Generic.athxa
AviraTR/Kazy.64384
Antiy-AVLWorm/Win32.WBNA.gen
XcitiumWorm.Win32.VB.AUA@4o7zkg
ArcabitTrojan.Generic.D146B0
ZoneAlarmTrojan.Win32.Jorik.Vobfus.drgt
MicrosoftWorm:Win32/Vobfus.DX
GoogleDetected
AhnLab-V3Trojan/Win32.Jorik.R24244
Acronissuspicious
VBA32Worm.WBNA
ALYacTrojan.GenericKDZ.83632
MAXmalware (ai score=81)
MalwarebytesMalware.AI.4166438928
PandaW32/Vobfus.GEW.worm
TrendMicro-HouseCallWORM_VOBFUS_000001c.TOMA
RisingWorm.Win32.Vobfus.ag (CLASSIC)
YandexTrojan.GenAsa!66q+qwjMeX0
IkarusWorm.Win32.AutoRun
MaxSecureTrojan.W32.SuperThreat.m
FortinetW32/Injector.ADYA!tr
AVGWin32:VB-ACEH [Trj]
DeepInstinctMALICIOUS

How to remove Trojan.Win32.Jorik.Vobfus.drgt?

Trojan.Win32.Jorik.Vobfus.drgt removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment