Trojan

What is “Trojan.Win32.VBKrypt.aaozq”?

Malware Removal

The Trojan.Win32.VBKrypt.aaozq is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.VBKrypt.aaozq virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid

How to determine Trojan.Win32.VBKrypt.aaozq?


File Info:

name: B59B4C1D66E0F5A0DD11.mlw
path: /opt/CAPEv2/storage/binaries/d226c693712eedc16301da1a8d3adc4fc8304a1687fdfe88e15b079530fc33c4
crc32: 31632425
md5: b59b4c1d66e0f5a0dd111c090a854294
sha1: aa07f351213d186a435433ba9f91ea65c63aaece
sha256: d226c693712eedc16301da1a8d3adc4fc8304a1687fdfe88e15b079530fc33c4
sha512: 9a40f33861db03976dfa2a840ea8b61a2c8bd17115f1468bfb5b6865fa7b5d1e98cf385de39b4746c93e20a7e1876caa31ba294dc72a41b8f235afb815594ab6
ssdeep: 6144:A7qAG2an10dekQyMBxwo5BgjczsqIvGbRjbLLFOSWLVxBX5LEh0Vt+EDZ9FRY6g9:Hwy+YguV7uikFgckV7uikFg
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10325C4366CA9616BE6B152B6CFD5DC77F988E1733A124D2B4552039A03C32A3ACC117F
sha3_384: 0d1430aa694f955742a8295d1c67de466769ebcff7eef25471e0503c0cfeae3dc88256f11476cd9770bae60791ae8392
ep_bytes: 6850114000e8eeffffff000000000000
timestamp: 2022-01-30 03:06:45

Version Info:

Translation: 0x0409 0x04b0
CompanyName: lt villa
FileDescription: germi serve legato qg
LegalCopyright: seduti fuma offra 1996
ProductName: palese
FileVersion: 7.08.0004
ProductVersion: 7.08.0004
InternalName: cwjlz1
OriginalFilename: cwjlz1.exe

Trojan.Win32.VBKrypt.aaozq also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanTrojan.GenericKD.38808345
FireEyeGeneric.mg.b59b4c1d66e0f5a0
ALYacTrojan.GenericKD.38808345
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWNetWorm ( 700000151 )
K7AntiVirusNetWorm ( 700000151 )
BitDefenderThetaGen:NN.ZevbaF.34182.6m0@aygdnHbO
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.FQHL
TrendMicro-HouseCallTROJ_GEN.R002C0PB222
CynetMalicious (score: 100)
KasperskyTrojan.Win32.VBKrypt.aaozq
BitDefenderTrojan.GenericKD.38808345
AvastWin32:TrojanX-gen [Trj]
EmsisoftTrojan.GenericKD.38808345 (B)
VIPRELooksLike.Win32.Malware!vb (v)
TrendMicroTROJ_GEN.R002C0PB222
McAfee-GW-EditionBehavesLike.Win32.Generic.dm
SentinelOneStatic AI – Malicious PE
SophosMal/Generic-S
APEXMalicious
WebrootW32.Trojan.Gen
Antiy-AVLTrojan/Win32.GenKryptik
MicrosoftTrojan:Win32/Tiggre!rfn
ZoneAlarmTrojan.Win32.VBKrypt.aaozq
GDataTrojan.GenericKD.38808345
McAfeeRDN/Generic.rp
MAXmalware (ai score=87)
VBA32Trojan.Sabsik.FL
MalwarebytesTrojan.Injector
RisingTrojan.Generic!8.C3 (CLOUD)
IkarusTrojan.Win32.Krypt
FortinetW32/GenKryptik.FQHL!tr
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.1213d1
PandaTrj/GdSda.A

How to remove Trojan.Win32.VBKrypt.aaozq?

Trojan.Win32.VBKrypt.aaozq removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment