Trojan

What is “Trojan.Win32.Jorik.Vobfus.epgn”?

Malware Removal

The Trojan.Win32.Jorik.Vobfus.epgn is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Jorik.Vobfus.epgn virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Behavioural detection: Injection (inter-process)
  • Attempts to disable Windows Auto Updates
  • Anomalous binary characteristics
  • Attempts to modify Explorer settings to prevent hidden files from being displayed
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan.Win32.Jorik.Vobfus.epgn?


File Info:

name: 544596AA5F777C7D4002.mlw
path: /opt/CAPEv2/storage/binaries/a078c74d4d09e26741669866e3de98812bf430fe8641557f4ba4799e2404c415
crc32: 4B85825E
md5: 544596aa5f777c7d40022c15199890f5
sha1: f01ef728e4ae090decb8eda89498e5b1b605c7f5
sha256: a078c74d4d09e26741669866e3de98812bf430fe8641557f4ba4799e2404c415
sha512: 631f1740d4bfc07bc35c68d15df654911163eeed1b4051031b0ab6a871cb13035044aa96427980cd59312321da15767cb2c30be6b41646e236b4bc09f3f078d9
ssdeep: 6144:+BawbQXn2J5V2aWOKojDOgbTnNkyjZjj+:+AwbQWoOKojDOgbTNku
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1A444705523D0FB3CE424C2F829558250946AED3764A5AC0BFAD2BB5B77B1E47E260333
sha3_384: 18eb0c436b1e73514a6b75ce82264cc9c1ab83abaeb1c49e5ca776a219ae00d78e21003f220b5471f585a831e5df8ae1
ep_bytes: 68844a4000e8eeffffff000000000000
timestamp: 2012-06-01 21:47:49

Version Info:

Translation: 0x0409 0x04b0
Comments: Play Station Nation v1
CompanyName: Play Station Nation v1
FileDescription: Play Station Nation v1
LegalCopyright: Play Station Nation v1
LegalTrademarks: Play Station Nation v1
ProductName: Play Station Nation v1
FileVersion: 36.00
ProductVersion: 36.00
InternalName: abppouzc
OriginalFilename: abppouzc.exe

Trojan.Win32.Jorik.Vobfus.epgn also known as:

BkavW32.AIDetectMalware
LionicWorm.Win32.WBNA.luev
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Symmi.185
ClamAVWin.Trojan.Vobfus-24
FireEyeGeneric.mg.544596aa5f777c7d
CAT-QuickHealTrojan.Beebone.D
McAfeeVBObfus.ek
MalwarebytesWorm.Obfuscator
VIPREGen:Variant.Symmi.185
SangforSuspicious.Win32.Save.vb
K7AntiVirusEmailWorm ( 0054d10f1 )
AlibabaWorm:Win32/Jorik.3e454cbe
K7GWEmailWorm ( 0054d10f1 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZevbaF.36196.qm0@auL93dki
VirITTrojan.Win32.Generic.SPW
CyrenW32/Vobfus.BE.gen!Eldorado
SymantecW32.Changeup
ESET-NOD32Win32/Pronny.AV
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Jorik.Vobfus.epgn
BitDefenderGen:Variant.Symmi.185
NANO-AntivirusTrojan.Win32.Jorik.chvyyq
ViRobotTrojan.Win32.JORIK.262144.F
AvastWin32:VB-ADFI [Trj]
TencentWorm.Win32.Vobfus.n
EmsisoftGen:Variant.Symmi.185 (B)
BaiduWin32.Worm.Pronny.d
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.VbCrypt.60
TrendMicroWORM_VOBFUS.SM42
McAfee-GW-EditionBehavesLike.Win32.VBObfus.dm
Trapminemalicious.moderate.ml.score
SophosMal/VBCheMan-J
SentinelOneStatic AI – Suspicious PE
GDataGen:Variant.Symmi.185
JiangminWorm/Vobfus.abit
AviraTR/Dropper.Gen
MAXmalware (ai score=88)
Antiy-AVLWorm/Win32.WBNA.gen
XcitiumWorm.Win32.Pronny.AK@4ogvoo
ArcabitTrojan.Symmi.185
SUPERAntiSpywareTrojan.Agent/Gen-Vobfus
ZoneAlarmTrojan.Win32.Jorik.Vobfus.epgn
MicrosoftWorm:Win32/Vobfus.gen!R
GoogleDetected
AhnLab-V3Trojan/Win32.Jorik.R28757
VBA32BScope.Worm.WBNA
ALYacGen:Variant.Symmi.185
TACHYONTrojan/W32.Jorik.262144
Cylanceunsafe
PandaW32/Vobfus.GEW.worm
TrendMicro-HouseCallWORM_VOBFUS.SM42
RisingTrojan.VB!1.99F7 (CLASSIC)
IkarusWin32.Outbreak
FortinetW32/VBKrypt.C!tr
AVGWin32:VB-ADFI [Trj]
DeepInstinctMALICIOUS

How to remove Trojan.Win32.Jorik.Vobfus.epgn?

Trojan.Win32.Jorik.Vobfus.epgn removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment