Trojan

Trojan:Win32/Virlock.BS!MTB removal

Malware Removal

The Trojan:Win32/Virlock.BS!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Virlock.BS!MTB virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan:Win32/Virlock.BS!MTB?


File Info:

name: 7CF69AC1275AEF674F6B.mlw
path: /opt/CAPEv2/storage/binaries/0546901675371eac4e6d241f5ba185235573dc027c8d14a9e906190e5c1836ea
crc32: D98EE668
md5: 7cf69ac1275aef674f6b983c4cb68603
sha1: 4f3cc913a811e5d78732709f38eb2f868a2731e4
sha256: 0546901675371eac4e6d241f5ba185235573dc027c8d14a9e906190e5c1836ea
sha512: 44552c70b9bc0cc6e0aeb3800cb45cc4c309a1f230984bdda8bdabe3014204dec9fdf75da13d20f9aed3bcc9eb86b1fe72afc7215b464bc316084355ca9453b4
ssdeep: 98304:pGU36gTuvt98BGKsOhpRq3tieSbOwQzGNX2mwPGzldtax26etFQGy1ZsP:kU3XTuvt9wG3OhpUdyx7pzBax26wFQG
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12846228C34E9955DE1A866F6FE2FE8A1E39D0E585B074BD307098CA03C155FE1D3B4A2
sha3_384: d15a9642f5eec6f3f761a3545617e4a2ea7caa2fca22e6df5c46485d2ce07709b6ef2ba520946154ab2c754363b30803
ep_bytes: 6a40680010000068005c0e006a00e81b
timestamp: 2017-07-29 00:57:06

Version Info:

0: [No Data]

Trojan:Win32/Virlock.BS!MTB also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
ClamAVWin.Virus.PolyRansom-5704625-0
SkyhighBehavesLike.Win32.VirRansom.tc
ALYacTrojan.Generic.33228205
VIPRETrojan.Generic.33228205
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0052b3dd1 )
BitDefenderTrojan.Generic.33228205
K7GWTrojan ( 0052b3dd1 )
Cybereasonmalicious.3a811e
SymantecW32.Virlock!inf7
Elasticmalicious (high confidence)
APEXMalicious
CynetMalicious (score: 100)
AlibabaTrojan:Win32/Virlock.36a10492
NANO-AntivirusVirus.WinXX.Virlock.ejooci
ViRobotTrojan.Win32.Virlock.Gen.A
MicroWorld-eScanTrojan.Generic.33228205
AvastOther:Malware-gen [Trj]
RisingVirus.VirLock!1.A247 (CLASSIC)
EmsisoftTrojan.Generic.33228205 (B)
DrWebWin32.VirLock.16
ZillyaVirus.Virlock.Win32.6
TrendMicroPE_VIRLOCK.K
FireEyeTrojan.Generic.33228205
SophosMal/Generic-S
IkarusVirus.Win32.Virlock
GoogleDetected
MAXmalware (ai score=86)
Antiy-AVLVirus/Win32.VirLock.j
MicrosoftTrojan:Win32/Virlock.BS!MTB
XcitiumVirus.Win32.Virlock.cs@6b1yhg
ArcabitTrojan.Generic.D1FB05AD
GDataTrojan.Generic.33228205
VaristW32/Nabucur.C.gen!Eldorado
AhnLab-V3Trojan/Win32.Katusha.R162618
Acronissuspicious
McAfeeTrojan-FNET!7CF69AC1275A
TACHYONVirus/W32.VirRansom.B
Cylanceunsafe
TrendMicro-HouseCallPE_VIRLOCK.K
SentinelOneStatic AI – Malicious PE
MaxSecureVirus.polyransom.k
FortinetW32/VirLock.16!tr
AVGOther:Malware-gen [Trj]
DeepInstinctMALICIOUS

How to remove Trojan:Win32/Virlock.BS!MTB?

Trojan:Win32/Virlock.BS!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment