Trojan

How to remove “Trojan.Win32.Vebzenpak.xfv”?

Malware Removal

The Trojan.Win32.Vebzenpak.xfv is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Vebzenpak.xfv virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Win32.Vebzenpak.xfv?


File Info:

crc32: C4994181
md5: 835277f15bdc98338732bf462fed95a6
name: cursor.png
sha1: d2c30bf754ba5630b90b83911ed772fcd902c08e
sha256: 8b647600a7c446aaa07b18a0b57482868bfe03530f18917ddf70fcfc16a941c0
sha512: a363d4190bac93d381b93141d395c147effe2609caa6457c8fd93e82d5a380f193f2d9f22ad2b34188432ef8a52d1a5737edc35251314f5ed35e133ace505e6c
ssdeep: 3072:uGkSYFxWFdFE/fS8sY6PguLVJfI8h6tXKBE/fzgmP3uZ3qGNRpAS9iHJz7v9UNeQ:U1xWFdFY6IiVRBhoRzg0Z6AZbts1b
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: StringExtractor
FileVersion: 1.0.0.0
CompanyName: Gdr Ltd.
Comments: Votes and Comments are highly appreciated
ProductName: StringExtractor
ProductVersion: 1.0.0.0
FileDescription: StringExtractor - Extracts Strings from binary Files
OriginalFilename: StringExtractor.exe

Trojan.Win32.Vebzenpak.xfv also known as:

BkavW32.AIDetectVM.malware1
FireEyeGeneric.mg.835277f15bdc9833
CylanceUnsafe
SangforMalware
Cybereasonmalicious.754ba5
Invinceaheuristic
APEXMalicious
KasperskyTrojan.Win32.Vebzenpak.xfv
RisingTrojan.Injector!1.C714 (C64:YzY0OoriE/cUdnuI)
Endgamemalicious (high confidence)
ZoneAlarmTrojan.Win32.Vebzenpak.xfv
CynetMalicious (score: 100)
BitDefenderThetaGen:NN.ZevbaF.34130.Em1@a4JWk9gO
ESET-NOD32a variant of Win32/GenKryptik.ENER
SentinelOneDFI – Suspicious PE
eGambitUnsafe.AI_Score_99%
AVGWin32:Trojan-gen
AvastWin32:Trojan-gen
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Trojan.Win32.Vebzenpak.xfv?

Trojan.Win32.Vebzenpak.xfv removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment