Trojan

How to remove “Trojan.Win32.Vebzenpak.zgy”?

Malware Removal

The Trojan.Win32.Vebzenpak.zgy is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Vebzenpak.zgy virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Attempts to mimic the file extension of a JPG image by having ‘jpg’ in the file name.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan.Win32.Vebzenpak.zgy?


File Info:

crc32: FF7F2536
md5: d90ce2bea547248ca6ddc8c72bfa28e5
name: Designs jpg jpg jpg jpg.scr
sha1: 7114ee901d3a1d7eac082b8871e443681828b4ef
sha256: fd70366a0abed417301e2a312927e5697e8ded01a50c830b408978fb61ff9241
sha512: c3ad8593579b8f1cbe0aa0b640fafc477aace81f11a9cdfc0d529e873ab8c76e3b2654d60059a7f636c434c9bd4d7f6cfbcac8e4996a0cb998aea52c299dd320
ssdeep: 1536:L7+Qi/5VQ+U/ZTOMMMMMM2MMBdqMMSaMMMMMMMMMMMMMMMMMMMMMMMMMMMM0tMM:LZi/MvV
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Enterochromaffin
InternalName: Juletrslysenes5
FileVersion: 1.00
LegalTrademarks: Programmingernes9
ProductName: Falsifying
ProductVersion: 1.00
OriginalFilename: Juletrslysenes5.exe

Trojan.Win32.Vebzenpak.zgy also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.34383279
FireEyeTrojan.GenericKD.34383279
CAT-QuickHealTrojan.Multi
ALYacTrojan.GenericKD.34383279
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
K7AntiVirusTrojan ( 0056cbe31 )
BitDefenderTrojan.GenericKD.34383279
K7GWTrojan ( 0056cbe31 )
CyrenW32/VBInject.AEG.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Dropper.LokiBot-9449859-0
KasperskyTrojan.Win32.Vebzenpak.zgy
AlibabaTrojan:Win32/Vebzenpak.b42cbb21
ViRobotTrojan.Win32.Z.Vebzenpak.90112.G
RisingDownloader.Agent!8.B23 (TFE:5:cYnx6fIjW7)
Ad-AwareTrojan.GenericKD.34383279
ComodoTrojWare.Win32.Unclassified.gen@0
DrWebTrojan.DownLoader34.25622
TrendMicroTROJ_GEN.R002C0DHJ20
SophosMal/Generic-S
JiangminTrojan.Vebzenpak.hjy
Antiy-AVLTrojan/Win32.Vebzenpak
MicrosoftTrojan:Win32/PonyStealer.VA!MSR
ArcabitTrojan.Generic.D20CA5AF
ZoneAlarmTrojan.Win32.Vebzenpak.zgy
GDataTrojan.GenericKD.34383279
McAfeeFareit-FYM!D90CE2BEA547
MAXmalware (ai score=81)
VBA32BScope.Trojan.Wacatac
MalwarebytesTrojan.MalPack.VB
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Injector.ENAL
TrendMicro-HouseCallTROJ_GEN.R002C0DHJ20
TencentWin32.Trojan.Vebzenpak.Wptc
IkarusTrojan.VB.Crypt
eGambitUnsafe.AI_Score_97%
FortinetW32/ENAL!tr
BitDefenderThetaGen:NN.ZevbaF.34196.fm0@a82ocvj
AVGWin32:DropperX-gen [Drp]
AvastWin32:DropperX-gen [Drp]
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360Win32/Trojan.777

How to remove Trojan.Win32.Vebzenpak.zgy?

Trojan.Win32.Vebzenpak.zgy removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment