Trojan

What is “Trojan.Win32.VBKrypt.aaoav”?

Malware Removal

The Trojan.Win32.VBKrypt.aaoav is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.VBKrypt.aaoav virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Unconventionial language used in binary resources: Russian
  • Uses Windows utilities for basic functionality
  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Creates a hidden or system file

How to determine Trojan.Win32.VBKrypt.aaoav?


File Info:

crc32: E1F809BA
md5: c3abdc06dedffad9755583e3db0fedb3
name: C3ABDC06DEDFFAD9755583E3DB0FEDB3.mlw
sha1: 020854b3617d9b212065aab917a1577a7b0d1716
sha256: 780392a6e9800d94e1ad31328612ff62bd7e57e4c1cf72aa944ba13b32bc9f71
sha512: a21ad1a23ee2652839dc5b9018a33e3e7ba4555440bc3ca2c369057cccb6d460cdaa8b4fb09801dcc20b1ae61b94b58093bc5c8f860bf85a23933ef3fca91d2f
ssdeep: 12288:bsOW6Q4OWz9hT0dzyHMFE2sXHLIdcVegrz7Ih17:tW6VXRhodzysFGX5VNn7IhV
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Win32.VBKrypt.aaoav also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 004bbba11 )
LionicTrojan.Multi.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Siggen15.27157
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.37818237
CylanceUnsafe
AlibabaTrojan:Win32/VBKrypt.7df99788
K7GWTrojan ( 004bbba11 )
SymantecTrojan.Gen.2
ESET-NOD32BAT/Hoax.FakeFileCoder.AR
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan.Win32.VBKrypt.aaoav
BitDefenderTrojan.GenericKD.37818237
ViRobotTrojan.Win32.Z.Vbkrypt.605010
MicroWorld-eScanTrojan.GenericKD.37818237
Ad-AwareTrojan.GenericKD.37818237
SophosMal/Generic-S
TrendMicroTROJ_GEN.R03BC0PJU21
McAfee-GW-EditionBehavesLike.Win32.Generic.hc
FireEyeGeneric.mg.c3abdc06dedffad9
EmsisoftTrojan.GenericKD.37818237 (B)
WebrootW32.Trojan.Gen
AviraTR/VBKrypt.uxgkb
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ArcabitTrojan.Generic.D2410F7D
GDataTrojan.GenericKD.37818237
AhnLab-V3Malware/Win.Generic.C4712458
McAfeeArtemis!C3ABDC06DEDF
MAXmalware (ai score=80)
VBA32Trojan.Sabsik.FL
TrendMicro-HouseCallTROJ_GEN.R002H0CJL21
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.Win32.VBKrypt.aaoav?

Trojan.Win32.VBKrypt.aaoav removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment