Trojan

UDS:Trojan.MSIL.VBKrypt removal guide

Malware Removal

The UDS:Trojan.MSIL.VBKrypt is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What UDS:Trojan.MSIL.VBKrypt virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine UDS:Trojan.MSIL.VBKrypt?


File Info:

crc32: 258D5F83
md5: 341de3ee18712faa68b74542d800ccfa
name: 341DE3EE18712FAA68B74542D800CCFA.mlw
sha1: 524e04b130dcc3b4d2917281cee8479906a175c6
sha256: b92b9d4ae9523e48b97add5bfd7d5406a0dd35be2d09211eadebe32ac4bb82cd
sha512: 5bd73f11b5b932c5f71a720dc17265fd8efedbff05f22cf4c6842d555e205c76c964764546c4ac7a55a2bfa7372945855bc7041256c3513ea198560afefa0ee0
ssdeep: 49152:SLBsasqYAQxVVqMNhSPAL/TGKhdvfk/jZWc:TaDYA7MrSIPGitKf
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2012
Assembly Version: 1.0.0.0
InternalName: ServerFau.exe
FileVersion: 1.0.0.0
CompanyName: Retry Games
LegalTrademarks:
Comments:
ProductName: Consumo - Retry
ProductVersion: 1.0.0.0
FileDescription: Consumo - Retry
OriginalFilename: ServerFau.exe

UDS:Trojan.MSIL.VBKrypt also known as:

Elasticmalicious (high confidence)
DrWebTrojan.PackedNET.964
CylanceUnsafe
CrowdStrikewin/malicious_confidence_60% (D)
SymantecScr.Malcode!gdn30
ESET-NOD32a variant of MSIL/GenKryptik.EPUV
APEXMalicious
CynetMalicious (score: 100)
KasperskyUDS:Trojan.MSIL.VBKrypt.gen
BitDefenderThetaGen:NN.ZemsilF.34088.In0@a8D1BD
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
FireEyeGeneric.mg.341de3ee18712faa
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1142734
MicrosoftTrojan:Script/Wacatac.B!ml
McAfeeArtemis!341DE3EE1871
MalwarebytesMalware.AI.776618224
YandexTrojan.AvsArher.bTJEKx
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/GenKryptik.FJEE!tr
Qihoo-360HEUR/QVM03.0.5D00.Malware.Gen

How to remove UDS:Trojan.MSIL.VBKrypt?

UDS:Trojan.MSIL.VBKrypt removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment