Trojan

Trojan.Win32.VBKrypt.aaohh removal tips

Malware Removal

The Trojan.Win32.VBKrypt.aaohh is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.VBKrypt.aaohh virus can do?

  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Trojan.Win32.VBKrypt.aaohh?


File Info:

name: 35797C95BEF2D5902DC2.mlw
path: /opt/CAPEv2/storage/binaries/ab46f33e54678dd890ed4e34a8a61f09865504bf234c75f74936ebf259ac942d
crc32: 563C96C8
md5: 35797c95bef2d5902dc2a5e29cf32844
sha1: 3960af451d7a24278acd59943f5458dae242f09f
sha256: ab46f33e54678dd890ed4e34a8a61f09865504bf234c75f74936ebf259ac942d
sha512: 52079c2081967d67153ab63d8d464bf934a8163f1d88f465f575e8d3d6460d8dc193ad3900c6d59522760ddade45f43611680f21b95e01feaba15fd087dbc9eb
ssdeep: 24576:AVm4Tw7S1yKmG0T00wpqXFZqs/rCDd7Kf7VU1v:z7aBmG0T00wphUe2zVU1
type: PE32+ executable (console) x86-64, for MS Windows
tlsh: T1A0A53922F8E204FAC17EE134C942936176717CA547326BD72F84AAAE1A75FD46E3D301
sha3_384: 9069fbd57161da0d11c0cb610a580304a6c801adc628da283a985f4dc9aab6269490f87f3bb39f7dafe687f9d44c4d10
ep_bytes: e97bc8ffffcccccccccccccccccccccc
timestamp: 1970-01-01 00:00:00

Version Info:

0: [No Data]

Trojan.Win32.VBKrypt.aaohh also known as:

LionicTrojan.Win32.VBKrypt.4!c
MicroWorld-eScanTrojan.GenericKD.47512837
FireEyeTrojan.GenericKD.47512837
McAfeeArtemis!35797C95BEF2
ZillyaTrojan.VBKrypt.Win32.377916
K7AntiVirusTrojan ( 0057be981 )
AlibabaTrojan:Win32/VBKrypt.fd3979fe
K7GWTrojan ( 0057be981 )
CyrenW64/Agent.DHH.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of WinGo/Agent.AQ
APEXMalicious
KasperskyTrojan.Win32.VBKrypt.aaohh
BitDefenderTrojan.GenericKD.47512837
AvastWin64:Trojan-gen
Ad-AwareTrojan.GenericKD.47512837
SophosMal/Generic-S
F-SecureTrojan.TR/Redcap.elzso
McAfee-GW-EditionArtemis!Trojan
EmsisoftTrojan.GenericKD.47512837 (B)
GDataWin64.Trojan.Agent.DO9ZKE
AviraTR/Redcap.elzso
GridinsoftRansom.Win64.Wacatac.sa
ArcabitTrojan.Generic.D2D4FD05
ViRobotTrojan.Win32.Z.Agent.2101248.BF
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
VBA32Trojan.VBKrypt
ALYacTrojan.GenericKD.47512837
MAXmalware (ai score=84)
TrendMicro-HouseCallTROJ_GEN.R002H0CKN21
FortinetW32/Agent.AQ!tr
AVGWin64:Trojan-gen
PandaTrj/CI.A

How to remove Trojan.Win32.VBKrypt.aaohh?

Trojan.Win32.VBKrypt.aaohh removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment