Trojan

About “Trojan.Win32.VBKrypt.xupa” infection

Malware Removal

The Trojan.Win32.VBKrypt.xupa is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.VBKrypt.xupa virus can do?

  • Executable code extraction
  • Unconventionial language used in binary resources: Czech
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan.Win32.VBKrypt.xupa?


File Info:

crc32: 8E070766
md5: 66f348f54eb3cf9d2fc3a91058bf3bb8
name: 66F348F54EB3CF9D2FC3A91058BF3BB8.mlw
sha1: c8cdaa90ce596308e62850db4ac331bf17a1abdf
sha256: 61b36c03b131bf1dac4d6ddf392b9ebd48a0d6c723abb9119c308dd22b5432db
sha512: 349cb0e91e5262a7008607f534c6e4fdeddbd24106c2339f420042709d84e70ce1119a4dfb90991c2d05aecdde7b344ca419850276012344d663dd232dc5f914
ssdeep: 24576:rcCT67wHqWis4l+jIACFr5hqjiLDpSJDN93pqb6W8cU4gLQeA:YCpn8t74iA3qb6W8cU4F
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0405 0x04b0
InternalName: Braggat0
FileVersion: 1.09.0005
CompanyName: Windows
Comments: Geacata
ProductName: Orphancy
ProductVersion: 1.09.0005
FileDescription: Geacata
OriginalFilename: Braggat0.exe

Trojan.Win32.VBKrypt.xupa also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00502b1a1 )
Elasticmalicious (high confidence)
DrWebTrojan.Siggen6.55368
CynetMalicious (score: 100)
ALYacTrojan.Agent.DXTX
CylanceUnsafe
ZillyaTrojan.VBKrypt.Win32.302131
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 00502b1a1 )
Cybereasonmalicious.54eb3c
CyrenW32/Injector.YKAB-2853
SymantecW32.Tapin
ESET-NOD32Win32/AutoRun.Delf.LV
ZonerTrojan.Win32.82457
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
ClamAVWin.Packed.Ponystealer-6733035-0
KasperskyTrojan.Win32.VBKrypt.xupa
BitDefenderTrojan.Agent.DXTX
NANO-AntivirusTrojan.Win32.VBKrypt.ewdbrj
ViRobotTrojan.Win32.Agent.1576960.B
SUPERAntiSpywareTrojan.Agent/Gen-PonyStealer
MicroWorld-eScanTrojan.Agent.DXTX
Ad-AwareTrojan.Agent.DXTX
SophosML/PE-A + Mal/FareitVB-I
ComodoTrojWare.Win32.Fareit.RGY@7qlz41
BitDefenderThetaGen:NN.ZevbaF.34738.Gn0@amlC54iO
TrendMicroTSPY_HPFAREIT.SME
McAfee-GW-EditionBehavesLike.Win32.DistTrack.tm
FireEyeGeneric.mg.66f348f54eb3cf9d
EmsisoftTrojan.Agent.DXTX (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.VBKrypt.cgtc
AviraHEUR/AGEN.1126331
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.23994B5
MicrosoftVirTool:Win32/VBInject.YA!MTB
GridinsoftTrojan.Win32.Kryptik.ka!s1
AegisLabTrojan.Win32.VBKrypt.tqRV
GDataTrojan.Agent.DXTX
TACHYONTrojan/W32.VB-VBKrypt.1576960.B
AhnLab-V3Win-Trojan/VBKrypt.RP.X1764
Acronissuspicious
McAfeeDistTrack!66F348F54EB3
MAXmalware (ai score=87)
VBA32Trojan.VBKrypt
MalwarebytesQbot.Backdoor.Stealer.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallTSPY_HPFAREIT.SME
RisingTrojan.Injector!1.B459 (CLASSIC)
YandexTrojan.GenAsa!z1jxJcx+Gmw
IkarusWorm.Win32.AutoRun
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Injector.DJYO!tr
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml

How to remove Trojan.Win32.VBKrypt.xupa?

Trojan.Win32.VBKrypt.xupa removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment