Trojan

Trojan:Win32/VBInject.AA!MTB removal guide

Malware Removal

The Trojan:Win32/VBInject.AA!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/VBInject.AA!MTB virus can do?

  • A process created a hidden window
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan:Win32/VBInject.AA!MTB?


File Info:

crc32: 062C0DDA
md5: af8e86c5d4198549f6375df9378f983c
name: tmp93hw9uze
sha1: 7ab5ed449b891bd4899fba62d027a2cc26a05e6f
sha256: 7570a7a6830ade05dcf862d5862f12f12445dbd3c0ad7433d90872849e11c267
sha512: 137f5a281aa15802e300872fdf93b9ee014d2077c29d30e5a029664eb0991af2afbe1e5c53a9d7bff8f0508393a8b7641c5a97b4b0e0061befb79a93506c94e1
ssdeep: 393216:oKzkshyIMtAcwzhQ/CceAocPwz3fwnjWKlDc8F6tB:BzkmSmzS/Be/cPquj7D36r
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: fuck
InternalName: fuck
FileVersion: fuck
CompanyName: fuck
PrivateBuild: fuck
LegalTrademarks: fuck
Comments: fuck
ProductName: fuck
SpecialBuild: fuck
ProductVersion: fuck
FileDescription: fuck
OriginalFilename: fuck
Translation: 0x0000 0x04e4

Trojan:Win32/VBInject.AA!MTB also known as:

MicroWorld-eScanTrojan.GenericKD.43259104
CAT-QuickHealTrojan.Wacatac
SUPERAntiSpywareTrojan.Agent/Gen-Falcomp
K7AntiVirusRiskware ( 0040eff71 )
AlibabaTrojanPSW:Win32/Racealer.fde4903b
K7GWRiskware ( 0040eff71 )
TrendMicroTROJ_GEN.R011C0RF120
F-ProtW32/Trojan2.QBGD
SymantecML.Attribute.HighConfidence
ESET-NOD32Java/TrojanDownloader.Agent.NRI
TrendMicro-HouseCallTROJ_GEN.R011C0RF120
GDataTrojan.GenericKD.43259104
KasperskyTrojan-PSW.Win32.Racealer.fvz
BitDefenderTrojan.GenericKD.43259104
AvastJava:Malware-gen [Trj]
TencentWin32.Trojan-qqpass.Qqrob.Lqfe
Ad-AwareTrojan.GenericKD.43259104
SophosMal/Generic-S
ComodoMalware@#2qdiyk3qud765
F-SecureTrojan.TR/Injector.srorx
DrWebTrojan.MulDrop12.55968
VIPRETrojan.Win32.Generic!BT
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Generic.rc
FireEyeGeneric.mg.af8e86c5d4198549
EmsisoftTrojan.GenericKD.43259104 (B)
APEXMalicious
CyrenW32/Trojan.IUNU-0892
JiangminTrojan.PowerShell.ev
AviraTR/Injector.srorx
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D29414E0
AegisLabTrojan.Win32.Generic.4!c
ZoneAlarmTrojan-PSW.Win32.Racealer.fvz
MicrosoftTrojan:Win32/VBInject.AA!MTB
AhnLab-V3Trojan/Win32.Injector.C4112010
VBA32TrojanPSW.Racealer
ALYacTrojan.Ransom.Crysis
MAXmalware (ai score=100)
CylanceUnsafe
ZonerTrojan.Win32.73853
RisingTrojan.Vigorf!8.EAEA (CLOUD)
IkarusTrojan.Win32.Injector
FortinetW32/EMBN!tr
WebrootW32.Trojan.Gen
AVGJava:Malware-gen [Trj]
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_90% (W)
Qihoo-360Win32/Trojan.PSW.b6f

How to remove Trojan:Win32/VBInject.AA!MTB?

Trojan:Win32/VBInject.AA!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment