Trojan

Trojan:Win32/Vundo!G malicious file

Malware Removal

The Trojan:Win32/Vundo!G is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Vundo!G virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan:Win32/Vundo!G?


File Info:

name: 74D670A92309CD450615.mlw
path: /opt/CAPEv2/storage/binaries/655c1dc0a45f533878a96bd57b95fd6093334154afe3fcbdf8688454c694dd53
crc32: DDDE7A4C
md5: 74d670a92309cd4506155c8400d55544
sha1: b26379e1a0bd2687e28cebb7e76a96f55263c50b
sha256: 655c1dc0a45f533878a96bd57b95fd6093334154afe3fcbdf8688454c694dd53
sha512: 70abe01cae223c6c908382ec1f8a48be66f4714454700e47530d63cadd2170c00ebb129e3821a532ed79329b8f76e4f7949a2d6bbede9fbfd9021a302eed141a
ssdeep: 1536:jNG0mH0iaGc3RorXbNZSfLq6DYK4Z0ajQX9PcHjUTTv692btA8xaYow3ym2Rem:jPmH0jxUNZSfLq654ZMX9PcHYP6YWea7
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T124831298B73623E1C2B5D731D12626B31979C6A35F20E2F76823D0E2CC429B989F7345
sha3_384: e66265d2bd226ccf2ae0c89b26ec7da53291a776a99cca2cf7610d33b6e5d65d138a7d7b9ed4de6f99eb83157d20b9ac
ep_bytes: 506870530210e809040000e8e4040000
timestamp: 2008-05-08 21:50:46

Version Info:

0: [No Data]

Trojan:Win32/Vundo!G also known as:

BkavW32.AIDetectMalware
LionicHacktool.Win32.Krap.ldVw
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.Vundo.GPR
FireEyeGeneric.mg.74d670a92309cd45
SkyhighBehavesLike.Win32.Vundo.mc
McAfeeVundo.gen.hz
Cylanceunsafe
ZillyaTrojan.Agent.Win32.25606
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (D)
AlibabaVirTool:Win32/Obfuscator.9d44d039
K7GWTrojan ( 00521e9b1 )
K7AntiVirusTrojan ( 00521e9b1 )
VirITTrojan.Win32.Vundo.GC
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Adware.Virtumonde.NEO
APEXMalicious
TrendMicro-HouseCallMal_Vundo-19
KasperskyPacked.Win32.Krap.q
BitDefenderTrojan.Vundo.GPR
NANO-AntivirusTrojan.Win32.Krap.bhcbtc
AvastWin32:Vuku [Trj]
TencentPacked.Win32.Krap.a
EmsisoftTrojan.Vundo.GPR (B)
F-SecureTrojan:W32/Vundo.gen!D
DrWebTrojan.Virtumod.based.27
VIPRETrojan.Vundo.GPR
TrendMicroMal_Vundo-19
Trapminemalicious.high.ml.score
SophosTroj/Virtum-Gen
SentinelOneStatic AI – Malicious PE
JiangminTrojanSpy.Agent.ici
WebrootW32.Rogue.Gen
GoogleDetected
AviraTR/ATRAPS.Gen2
VaristW32/Virtumonde.AH_b.gen!Eldorado
Antiy-AVLTrojan[Packed]/Win32.Krap
KingsoftWin32.Troj.VitrumondeT.ko.84992
MicrosoftTrojan:Win32/Vundo.gen!G
XcitiumTrojWare.Win32.PkdKrap.Q@1j8qvd
ArcabitTrojan.Vundo.GPR
ViRobotTrojan.Win32.Agent.84992.IM
ZoneAlarmPacked.Win32.Krap.q
GDataTrojan.Vundo.GPR
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Xema.C74999
BitDefenderThetaAI:Packer.4B68629A14
ALYacTrojan.Vundo.GPR
MAXmalware (ai score=100)
VBA32BScope.Trojan.Virtumod
PandaTrj/Krap.A
RisingTrojan.Win32.VUNDO.cnw (CLASSIC)
YandexTrojan.GenAsa!h5WTtW0w/uU
IkarusTrojan.Win32.Monder
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Monder.CMWT!tr
AVGWin32:Vuku [Trj]
DeepInstinctMALICIOUS
alibabacloudVirtool:Win/Virtumonde.NEO

How to remove Trojan:Win32/Vundo!G?

Trojan:Win32/Vundo!G removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment