Trojan

Should I remove “Trojan.Win32.Vebzenpak.aayo”?

Malware Removal

The Trojan.Win32.Vebzenpak.aayo is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Vebzenpak.aayo virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan.Win32.Vebzenpak.aayo?


File Info:

crc32: 7EE841DD
md5: d062f298af41e5c63b9543586e397649
name: upload_file
sha1: 45436a7ae6a7247de36887fec3b0b8470137f6e7
sha256: 3d58f8ebad7482150089af4041e1ef4297e21fe85e2e49c85b7661fbed2bab28
sha512: 827f22ca40e4f442282eb47298b3061efef6f202a87e8f94be6f34dc769a1ffa059c2835e15bf47bd48df82a0614b85acdd0d5e22a0d917ea67f7abaec5f6cde
ssdeep: 768:BAe5g0w6uLxyxmdtBL0WEtTdN682hDYEZINeJt:B5FuFdnzE7N65/
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0410 0x04b0
InternalName: GANJAHTOO
FileVersion: 2.00
CompanyName: Taxan
LegalTrademarks:
Comments: Taxan
ProductName: Taxan
ProductVersion: 2.00
OriginalFilename: GANJAHTOO.exe

Trojan.Win32.Vebzenpak.aayo also known as:

BkavW32.AutorunHAE.Fam.Worm
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.44023632
FireEyeTrojan.GenericKD.44023632
CAT-QuickHealTrojan.IGENERIC
McAfeePWS-FCQV!D062F298AF41
CylanceUnsafe
K7AntiVirusTrojan ( 00570b661 )
BitDefenderTrojan.GenericKD.44023632
K7GWTrojan ( 00570b661 )
TrendMicroTrojan.Win32.WACATAC.THJAOBO
CyrenW32/Trojan.EAWK-1027
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
ClamAVWin.Trojan.VBGeneric-9775687-0
KasperskyTrojan.Win32.Vebzenpak.aayo
AlibabaTrojan:Win32/Vebzenpak.ecd245fd
NANO-AntivirusTrojan.Win32.Vebzenpak.hzglju
AegisLabTrojan.Multi.Generic.4!c
TencentWin32.Trojan.Vebzenpak.Wope
Ad-AwareTrojan.GenericKD.44023632
EmsisoftTrojan.GenericKD.44023632 (B)
DrWebTrojan.DownLoader34.64937
VIPRETrojan.Win32.Generic!BT
InvinceaMal/Generic-S
McAfee-GW-EditionPWS-FCQV!D062F298AF41
SophosMal/Generic-S
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.108317608.susgen
MAXmalware (ai score=81)
MicrosoftTrojan:Win32/Ymacco.AB12
ArcabitTrojan.Generic.D29FBF50
ZoneAlarmTrojan.Win32.Vebzenpak.aayo
GDataTrojan.GenericKD.44023632
AhnLab-V3Trojan/Win32.VBKrypt.R352865
BitDefenderThetaGen:NN.ZevbaF.34566.cm0@aiKmTijG
ALYacTrojan.Agent.GuLoader
VBA32TScope.Trojan.VB
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Injector.ENPD
TrendMicro-HouseCallTrojan.Win32.WACATAC.THJAOBO
RisingTrojan.Injector!8.C4 (TFE:5:a9DX3avmxuV)
FortinetW32/ENPD!tr
AVGWin32:MalwareX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_90% (W)
Qihoo-360Win32/Trojan.49d

How to remove Trojan.Win32.Vebzenpak.aayo?

Trojan.Win32.Vebzenpak.aayo removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment