Trojan

How to remove “Trojan.Win32.Jorik.Vobfus.fbwf”?

Malware Removal

The Trojan.Win32.Jorik.Vobfus.fbwf is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Jorik.Vobfus.fbwf virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Behavioural detection: Injection (inter-process)
  • Attempts to disable Windows Auto Updates
  • Attempts to modify Explorer settings to prevent hidden files from being displayed

How to determine Trojan.Win32.Jorik.Vobfus.fbwf?


File Info:

name: 79C9A34FB9A2ADA2E9F4.mlw
path: /opt/CAPEv2/storage/binaries/a71544ff76383c67b9b37090b8ff794a6a8732d30a7f597de9d87d4e6b29d1c6
crc32: F3C7DEB3
md5: 79c9a34fb9a2ada2e9f4f8b6f9aa0a4d
sha1: 5cfb24c95a1c36fad8d4007867a09f335bfd0b83
sha256: a71544ff76383c67b9b37090b8ff794a6a8732d30a7f597de9d87d4e6b29d1c6
sha512: ff0dec6adb14865d77ff168972491b958caf4d8bfbbea89ae4ebc7e13d078138d8b9c1b917e2e195f1071d89c715c5ad58f0995a7c44570862f84dbb5a6ae342
ssdeep: 1536:1FpK+M/Cfc0v0pBdQrAa/sOf5MFzF0K1/lex4vbLDuumW9I3iYIcB758UftV:Q5ic0OOAa/lAFZbLa
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12214C6397707D4A5D019A53922F789BE71B3F45C4B87208F77886B626CA0E089DB6F43
sha3_384: 5cccfc8f3cf00479796515b9dbfed11df9f6ceac530cb1351dae6b0346f25c919fec8658d0a34fd62971bef571f6da92
ep_bytes: 6808134000e8f0ffffff000060000000
timestamp: 1996-10-28 02:27:01

Version Info:

0: [No Data]

Trojan.Win32.Jorik.Vobfus.fbwf also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Midie.117599
ClamAVWin.Malware.Vobfus-6793193-0
FireEyeGeneric.mg.79c9a34fb9a2ada2
CAT-QuickHealTrojan.Beebone.D
ALYacGen:Variant.Midie.117599
MalwarebytesMalware.AI.2605327274
VIPREGen:Variant.Midie.117599
SangforTrojan.Win32.Save.a
K7AntiVirusEmailWorm ( 0054d10f1 )
K7GWEmailWorm ( 0054d10f1 )
CrowdStrikewin/malicious_confidence_100% (D)
BaiduWin32.Worm.Pronny.fp
VirITTrojan.Win32.Vobfus.FBWF
CyrenW32/VB.HE.gen!Eldorado
SymantecW32.Changeup!gen20
ESET-NOD32a variant of Win32/VBObfus.V
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Jorik.Vobfus.fbwf
BitDefenderGen:Variant.Midie.117599
NANO-AntivirusTrojan.Win32.Jorik.coonis
AvastWin32:VBCrypt-BJA [Trj]
TencentTrojan.Win32.Vobfus.kqq
EmsisoftGen:Variant.Midie.117599 (B)
F-SecureWorm.WORM/Vobfus.GJ.1
DrWebWin32.HLLW.Autoruner2.16029
McAfee-GW-EditionBehavesLike.Win32.VBObfus.ct
Trapminemalicious.high.ml.score
SophosML/PE-A
IkarusVirus.Win32.Cryptor
GDataWin32.Trojan.PSE.1OJHJNG
JiangminTrojan/Jorik.gwhv
WebrootW32.Worm.Go
AviraWORM/Vobfus.GJ.1
MAXmalware (ai score=85)
Antiy-AVLWorm/Win32.WBNA.gen
ArcabitTrojan.Midie.D1CB5F
ZoneAlarmTrojan.Win32.Jorik.Vobfus.fbwf
MicrosoftWorm:Win32/Vobfus.GO
GoogleDetected
AhnLab-V3Trojan/Win.Jorik.R524019
McAfeeW32/Autorun.worm.aaeh
TACHYONTrojan/W32.VB-Jorik.200704.N
VBA32TScope.Trojan.VB
Cylanceunsafe
PandaTrj/Genetic.gen
RisingWorm.Vobfus!8.10E (TFE:3:ODyxnaCmVFB)
YandexTrojan.GenAsa!T3Gv5kmBXIo
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Injector.ADYA!tr
BitDefenderThetaAI:Packer.DAA109BB1F
AVGWin32:VBCrypt-BJA [Trj]
Cybereasonmalicious.fb9a2a
DeepInstinctMALICIOUS

How to remove Trojan.Win32.Jorik.Vobfus.fbwf?

Trojan.Win32.Jorik.Vobfus.fbwf removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment