Trojan

Should I remove “Trojan.Win32.Vebzenpak.pwr”?

Malware Removal

The Trojan.Win32.Vebzenpak.pwr is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Vebzenpak.pwr virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Win32.Vebzenpak.pwr?


File Info:

crc32: 97D4BA49
md5: f54f0f6c74e2f61eb3856832ff645ce4
name: ab.jpeg
sha1: 73da0cbaf426ca349f53e832f323d90edf808a9c
sha256: c4dc010cbd0f6c41f97fe8ac138d8d2e8cdc187a7ac3bb521009721dc49634d8
sha512: a0efe22d07e10da818fa59c1598f1f6afb8bd64f497234cec30752aa44383844efe19157bcd05b9951fc884d17b5edf15a65aefea3bf7483227da8ebbc739059
ssdeep: 768:UeM2ocAYg4ZerDIeniEbZt08SBTsISri0gnxIXcTb+xDFr7GhU:uHgMTiEbZaHB4JRr
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: Frisvmme
FileVersion: 2.01
CompanyName: NOodles
ProductName: ETHIOPESKO
ProductVersion: 2.01
OriginalFilename: Frisvmme.exe

Trojan.Win32.Vebzenpak.pwr also known as:

MicroWorld-eScanTrojan.GenericKDZ.67143
FireEyeGen:Heur.PonyStealer.fm0@o0VAzQji
McAfeeFareit-FTA!F54F0F6C74E2
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
BitDefenderTrojan.GenericKDZ.67143
K7GWTrojan ( 00566a241 )
TrendMicroTROJ_GEN.R002C0DEI20
F-ProtW32/VBKrypt.AKP.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.Generic-7788440-0
GDataTrojan.GenericKDZ.67143
KasperskyTrojan.Win32.Vebzenpak.pwr
AlibabaTrojan:Win32/Vebzenpak.f41f48be
AegisLabTrojan.Win32.Vebzenpak.4!c
RisingTrojan.Injector!1.C624 (CLOUD)
Ad-AwareTrojan.GenericKDZ.67143
EmsisoftTrojan.GenericKDZ.67143 (B)
ComodoMalware@#feamywld8nx2
F-SecureTrojan.TR/Injector.vhueo
McAfee-GW-EditionFareit-FTA!F54F0F6C74E2
SophosMal/FareitVB-AB
CyrenW32/VBKrypt.AKP.gen!Eldorado
eGambitUnsafe.AI_Score_99%
AviraTR/Injector.vhueo
MAXmalware (ai score=87)
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D10647
ZoneAlarmTrojan.Win32.Vebzenpak.pwr
MicrosoftTrojan:Win32/PonyStealer.PE!MTB
AhnLab-V3Trojan/Win32.VBKrypt.R336399
BitDefenderThetaGen:NN.ZevbaCO.34110.fm0@a0VAzQji
ALYacTrojan.GenericKDZ.67143
MalwarebytesTrojan.GuLoader.VB
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Injector.ELXQ
TrendMicro-HouseCallTROJ_GEN.R002C0DEI20
TencentWin32.Trojan.Vebzenpak.Ebql
YandexTrojan.Igent.bTI7gv.57
IkarusTrojan.VB.Crypt
FortinetW32/Injector.ELXM!tr
AVGWin32:Trojan-gen
AvastWin32:Trojan-gen
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360Win32/Trojan.a8d

How to remove Trojan.Win32.Vebzenpak.pwr?

Trojan.Win32.Vebzenpak.pwr removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment