Trojan

What is “Trojan:Win32/Vflooder!pz”?

Malware Removal

The Trojan:Win32/Vflooder!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Vflooder!pz virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is likely packed with VMProtect
  • Authenticode signature is invalid
  • Yara rule detections observed from a process memory dump/dropped files/CAPE

How to determine Trojan:Win32/Vflooder!pz?


File Info:

name: B0F347D7A5332BACF89C.mlw
path: /opt/CAPEv2/storage/binaries/21830cc0300436a75ea0fbd96be0c09aa38beea37ccc08f9480e785c101ab575
crc32: AFAADFF3
md5: b0f347d7a5332bacf89c1068e990a07c
sha1: 8e4f9347c1eeed598c45603cd27f04f705703387
sha256: 21830cc0300436a75ea0fbd96be0c09aa38beea37ccc08f9480e785c101ab575
sha512: a9fdf612a05f632c9cec2bb8a6632e6756c105caa5cbb87e5700dcabe62bc690cae10bdf30012e55864cd508aa394f01d6e1ed0b0f732aed2cf094f7e374fd7f
ssdeep: 1536:6H2flKKEt/YeGDhHQWx4LERohhXRsN8ibrXbgMk9TVbDsMDiET9PDCo/C:+gKKEC5x49BsSibXgMQTVbDfiPgC
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BE83F2D1BA0E80F0D8970F783E57566FF1F45050822C877BB3885BB56CA1B176D2A35A
sha3_384: f61cb5752954c2f9defcdf88a723fb03056c89b6af78fc9f7e9d3d17bd6291cadd166450ea086aeb96ab60315bf3cbf5
ep_bytes: 0f89380700006821355959c704245ff7
timestamp: 2014-06-25 22:58:59

Version Info:

0: [No Data]

Trojan:Win32/Vflooder!pz also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.mCVs
tehtrisGeneric.Malware
MicroWorld-eScanMemScan:Trojan.Agent.BYFH
FireEyeGeneric.mg.b0f347d7a5332bac
CAT-QuickHealTrojan.Vflooder.C6
SkyhighBehavesLike.Win32.Generic.mc
McAfeeGenericRXAA-FA!B0F347D7A533
Cylanceunsafe
ZillyaBackdoor.Agent.Win32.56610
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0049c30b1 )
AlibabaTrojan:Win32/Vflooder.3e2e
K7GWTrojan ( 0049c30b1 )
Cybereasonmalicious.7c1eee
ArcabitTrojan.Agent.BYFH
BitDefenderThetaGen:NN.ZexaF.36608.fyX@a8K0cXm
VirITTrojan.Win32.Agent4.BXTX
SymantecSMG.Heur!gen
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Agent.WBX
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Trojan.Agent-1352525
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderMemScan:Trojan.Agent.BYFH
NANO-AntivirusTrojan.Win32.dzfiji.eaqdxc
SUPERAntiSpywareTrojan.Agent/Gen-Crypt
AvastWin32:TrojanX-gen [Trj]
TencentTrojan.Win32.Agent.hh
EmsisoftMemScan:Trojan.Agent.BYFH (B)
F-SecureTrojan.TR/Black.Gen2
DrWebBackDoor.Spy.2465
VIPREMemScan:Trojan.Agent.BYFH
TrendMicroTROJ_VFLOODER_EJ010003.UVPM
Trapminemalicious.high.ml.score
SophosTroj/Agent-AHNL
IkarusTrojan.Win32.Vflooder
JiangminTrojan.Vtflooder.s
VaristW32/S-ffc2199d!Eldorado
AviraTR/Black.Gen2
Antiy-AVLTrojan/Win32.SGeneric
Kingsoftmalware.kb.b.999
XcitiumTrojWare.Win32.Agent.WBX@5bs8lt
MicrosoftTrojan:Win32/Vflooder!pz
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataWin32.Trojan.PSE.J2T5E
GoogleDetected
AhnLab-V3Trojan/Win32.Vflooder.R165359
VBA32Backdoor.Spy
ALYacMemScan:Trojan.Agent.BYFH
MAXmalware (ai score=84)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_VFLOODER_EJ010003.UVPM
RisingTrojan.Orbus!1.A3A0 (CLASSIC)
YandexTrojan.GenAsa!rmm3UX//DDE
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.7164915.susgen
FortinetW32/Agent.WBX!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Trojan:Win32/Vflooder!pz?

Trojan:Win32/Vflooder!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment