Trojan

Trojan.Win32.Vtflooder.cft (file analysis)

Malware Removal

The Trojan.Win32.Vtflooder.cft is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Vtflooder.cft virus can do?

  • Executable code extraction
  • Attempts to connect to a dead IP:Port (3 unique times)
  • Creates RWX memory
  • Reads data out of its own binary image
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • The executable is compressed using UPX
  • Anomalous binary characteristics

Related domains:

www.virustotal.com
twitter.com

How to determine Trojan.Win32.Vtflooder.cft?


File Info:

crc32: 18799CD1
md5: e40177fbbd2b30a586e55c3390bc0c28
name: E40177FBBD2B30A586E55C3390BC0C28.mlw
sha1: aca2830b0ea1b44a23a07327c6842ce3aec40c1d
sha256: 08980fdf31f8edeee5e94dfd3da01d874d22aa74a620202f1e6d21b09ea91805
sha512: 74cb663eb09339855561c7a2538ba852173360587ca0757c93cd146f2530102cdcb9a35ec7bac4a122899d704a63b5064e4784ed5c66622f78835c5e51b0dd3a
ssdeep: 384:c5P6d+tTZcrUAPkCMZlm5P6d+tTZcVV4uT/:c964fAPeZM964e
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

0: [No Data]

Trojan.Win32.Vtflooder.cft also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
DrWebTrojan.Flood.22062
MicroWorld-eScanTrojan.GenericKDZ.71392
FireEyeGeneric.mg.e40177fbbd2b30a5
CAT-QuickHealTrojan.Vflooder.E3
Qihoo-360HEUR/QVM19.1.0510.Malware.Gen
ALYacTrojan.GenericKDZ.71392
CylanceUnsafe
VIPRETrojan.Win32.Vflooder.a (v)
SangforMalware
K7AntiVirusTrojan ( 004bcce41 )
BitDefenderTrojan.GenericKDZ.71392
K7GWDoS-Trojan ( 004b69ce1 )
Cybereasonmalicious.bbd2b3
BitDefenderThetaGen:NN.ZexaF.34804.gmW@aKwKUpd
CyrenW32/S-d4826b4f!Eldorado
SymantecDownloader.Upatre
ESET-NOD32Win32/TrojanClicker.Tiny.NAM
TrendMicro-HouseCallTrojan.Win32.VFLOODER.SM
AvastWin32:Trojan-gen
ClamAVWin.Malware.Vtflooder-6723768-0
KasperskyTrojan.Win32.Vtflooder.cft
NANO-AntivirusTrojan.Win32.Crypted.dbpklq
TencentTrojan.Win32.VtFlooder.a
Ad-AwareTrojan.GenericKDZ.71392
SophosML/PE-A + Mal/FakeAV-BW
ComodoTrojWare.Win32.VTFlooder.A@5c5lsj
F-SecureTrojan.TR/Crypt.XPACK.Gen
BaiduWin32.Trojan.Kryptik.hd
TrendMicroTrojan.Win32.VFLOODER.SM
McAfee-GW-EditionBehavesLike.Win32.VTFlooder.cz
EmsisoftTrojan.GenericKDZ.71392 (B)
IkarusWin32.Heur
JiangminTrojan/Badur.cky
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Win32.TSGeneric
MicrosoftTrojan:Win32/Vflooder.B
ArcabitTrojan.Generic.D116E0
ZoneAlarmTrojan.Win32.Vtflooder.cft
GDataTrojan.GenericKDZ.71392
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Vtflooder.C4212262
Acronissuspicious
McAfeeGenericRXEO-JW!E40177FBBD2B
MAXmalware (ai score=88)
VBA32Trojan.Badur
MalwarebytesUpatre.Trojan.Downloader.DDS
PandaTrj/Genetic.gen
APEXMalicious
RisingTrojan.Vflooder!1.A171 (CLASSIC)
YandexTrojan.Vtflooder!kH4lWEy4Xv0
SentinelOneStatic AI – Malicious PE – Flooder
eGambitUnsafe.AI_Score_99%
FortinetW32/Vflooder.A!tr
AVGWin32:Trojan-gen
CrowdStrikewin/malicious_confidence_100% (D)
MaxSecureTrojan.Badur.ilcp

How to remove Trojan.Win32.Vtflooder.cft?

Trojan.Win32.Vtflooder.cft removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment