Trojan

Should I remove “Trojan.Win32.Vobfus.sln”?

Malware Removal

The Trojan.Win32.Vobfus.sln is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Vobfus.sln virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Behavioural detection: Injection (inter-process)
  • Attempts to disable Windows Auto Updates
  • Attempts to modify Explorer settings to prevent hidden files from being displayed

How to determine Trojan.Win32.Vobfus.sln?


File Info:

name: 83334BC3009091FA9C6E.mlw
path: /opt/CAPEv2/storage/binaries/f7557cac5bcd41f125bae700e737b845f710796f67ff36e5faa33cc4c8475999
crc32: 3ED86A6B
md5: 83334bc3009091fa9c6e882af8781d4e
sha1: ad75759056554437db9fa57e8d73a4d527303762
sha256: f7557cac5bcd41f125bae700e737b845f710796f67ff36e5faa33cc4c8475999
sha512: 443e6dd64e01c84feb8495437ffe6dc2bf8f4f1a4c12910b2e22146f50ffe5b216b7b232c8902ff38080f714d4acf57253594f7333c6b6b2bbafb7351e6e7f6e
ssdeep: 6144:3KtO3dwqsNy5ibpNjl4EqxF6snji81RUinKICuz:at8dQxlG
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F734D7A77B719888F418157058F3C3F23796EC4D494B520B6B243E2A3FBBE652D24A53
sha3_384: 37c1a411f4850d7e255fcaac9d1e5c7d72230df32c16e97fff2f524355a0adca2830edbc8aa412eec250087e04a82d3a
ep_bytes: 688c124000e8eeffffff000000000000
timestamp: 2012-05-04 05:48:36

Version Info:

Translation: 0x0409 0x04b0
ProductName: gmqqhay
FileVersion: 7.08.0002
ProductVersion: 7.08.0002
InternalName: piwkzfvmje
OriginalFilename: piwkzfvmje.exe

Trojan.Win32.Vobfus.sln also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.GenericKDZ.98339
ClamAVWin.Malware.Vobfus-9940378-0
FireEyeGeneric.mg.83334bc3009091fa
CAT-QuickHealTrojan.Beebone.D
ALYacTrojan.GenericKDZ.98339
MalwarebytesGeneric.Worm.AutoRun.DDS
SangforSuspicious.Win32.Save.vb
K7AntiVirusEmailWorm ( 0054d10f1 )
K7GWEmailWorm ( 0054d10f1 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZevbaF.36196.om0@aihdNlni
VirITTrojan.Win32.Cryptor.A
CyrenW32/Vobfus.O.gen!Eldorado
SymantecW32.Changeup
Elasticmalicious (high confidence)
ESET-NOD32Win32/AutoRun.VB.AVN
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Vobfus.sln
BitDefenderTrojan.GenericKDZ.98339
NANO-AntivirusTrojan.Win32.Vobfus.cqkxvu
SUPERAntiSpywareTrojan.Agent/Gen-Vban
AvastWin32:VB-ADDH [Trj]
TencentWorm.Win32.Vobfus.n
TACHYONTrojan/W32.Vobfus.233472
EmsisoftTrojan.GenericKDZ.98339 (B)
BaiduWin32.Worm.Autorun.af
F-SecureWorm.WORM/Vobfus.ew.jh
DrWebTrojan.MulDrop3.48626
VIPRETrojan.GenericKDZ.98339
TrendMicroWORM_VOBFUS.SM00
McAfee-GW-EditionBehavesLike.Win32.VBObfus.dt
Trapminemalicious.high.ml.score
SophosW32/Vobfus-AN
SentinelOneStatic AI – Malicious PE
GDataTrojan.GenericKDZ.98339
JiangminTrojan/Vbobf.b
AviraWORM/Vobfus.ew.jh
Antiy-AVLWorm/Win32.WBNA.gen
XcitiumTrojWare.Win32.VB.AVA@4paxk7
ArcabitTrojan.Generic.D18023
ViRobotTrojan.Win32.A.VB.233472.O
ZoneAlarmTrojan.Win32.Vobfus.sln
MicrosoftWorm:Win32/Vobfus.EW
GoogleDetected
AhnLab-V3Trojan/Win32.Vobfus.R29413
McAfeeVBObfus.dv
MAXmalware (ai score=87)
VBA32SScope.Malware-Cryptor.VBCR.3042
Cylanceunsafe
PandaW32/Vobfus.GEW.worm
TrendMicro-HouseCallWORM_VOBFUS.SM00
RisingTrojan.FakeIcon!1.64A2 (CLASSIC)
IkarusTrojan.Patched
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Jorik.EGLG!tr
AVGWin32:VB-ADDH [Trj]
Cybereasonmalicious.300909
DeepInstinctMALICIOUS

How to remove Trojan.Win32.Vobfus.sln?

Trojan.Win32.Vobfus.sln removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment