Virtool

Virtool.Vbinder.A4 information

Malware Removal

The Virtool.Vbinder.A4 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Virtool.Vbinder.A4 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial binary language: Russian
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Virtool.Vbinder.A4?


File Info:

crc32: CEED8BE6
md5: 393f20bf83a030c9a4e33492e95afb4b
name: menugpj.scr
sha1: bb7433b630ec16c35b8d223c284f9547e6e1e39f
sha256: cfb80339d21ff2da471c347d577c891898c0e5636cb01f88ae6812c7440bf4e7
sha512: 85cc5f84a3227fee74226c18d6fd99eda8162b19ae2c83bdf9dbdd8a7f34a838fe1021d70b0451732aef5e53eeff9533a569b8ea604d0e3e04149c3ce7554090
ssdeep: 12288:fEQ8DkuiHca63V6eS6ARkw5LsH8Go8ukYLVS1iXwaUyKeja2zhc5e7Aujpna:EDkptmcGARkwKH8jtkCU/XyN3zaesuNa
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

CompanyName: M$ Windows
ProductVersion: 1.2.3.4
ProductName: M$ Window
FileVersion: 1.2.3.4
FileDescription: x41fx440x43ex441x43cx43ex442x440 x444x43e
Translation: 0x0419 0x04e4

Virtool.Vbinder.A4 also known as:

BkavW32.AIDetectVM.malware
MicroWorld-eScanTrojan.MSIL.Injector.MF
FireEyeGeneric.mg.393f20bf83a030c9
CAT-QuickHealVirtool.Vbinder.A4
ALYacTrojan.MSIL.Injector.MF
CylanceUnsafe
VIPREDetect.Trojan.Win32.Small.nmm (v)
K7AntiVirusBackdoor ( 0040f6fb1 )
BitDefenderTrojan.MSIL.Injector.MF
K7GWBackdoor ( 0040f6fb1 )
Cybereasonmalicious.f83a03
Invinceaheuristic
BitDefenderThetaAI:Packer.FA7D6DCA1F
F-ProtW32/GenTroj.S.gen!Eldorado
ESET-NOD32Win32/TrojanDropper.Small.NMM
BaiduWin32.Trojan-Dropper.Small.o
APEXMalicious
AvastWin32:GenMalicious-NUS [Trj]
ClamAVWin.Trojan.Poison-8692
GDataWin32.Trojan-Dropper.Agent.AMY
KasperskyBackdoor.Win32.Poison.ggrf
NANO-AntivirusTrojan.Win32.Poison.cbeljp
ViRobotBackdoor.Win32.Agent.67584.L
TencentMalware.Win32.Gencirc.10b3e7f9
Ad-AwareTrojan.MSIL.Injector.MF
SophosTroj/Vbinder-D
ComodoTrojWare.Win32.Ransom.Xorist.ET@4mg4hg
F-SecureHeuristic.HEUR/AGEN.1114161
DrWebTrojan.MulDrop8.22787
TrendMicroTROJ_VBINDER.SM
McAfee-GW-EditionBehavesLike.Win32.Generic.jc
Trapminemalicious.high.ml.score
CMCBackdoor.Win32.Poison!O
EmsisoftTrojan.MSIL.Injector.MF (B)
IkarusBackdoor.Poison
CyrenW32/GenTroj.S.gen!Eldorado
JiangminBackdoor/Poison.abtg
AviraHEUR/AGEN.1114161
Endgamemalicious (high confidence)
ArcabitTrojan.MSIL.Injector.MF
AhnLab-V3Backdoor/Win32.Poison.R72119
ZoneAlarmBackdoor.Win32.Poison.ggrf
MicrosoftVirTool:Win32/Vbinder
Acronissuspicious
McAfeeGenericRXAC-LG!393F20BF83A0
MAXmalware (ai score=88)
VBA32Backdoor.Poison
MalwarebytesBackdoor.Dropper
PandaTrj/Injector.BH
TrendMicro-HouseCallTROJ_VBINDER.SM
RisingMalware.Heuristic!ET#100% (RDMK:cmRtazp8JfZ+dZU71cBvVDulZKoC)
YandexTrojan.Oxij.Gen.LA
SentinelOneDFI – Suspicious PE
eGambitUnsafe.AI_Score_89%
FortinetW32/Xorist.ET!tr
WebrootW32.Dropper.Gen
AVGWin32:GenMalicious-NUS [Trj]
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360HEUR/QVM20.1.B4F7.Malware.Gen

How to remove Virtool.Vbinder.A4?

Virtool.Vbinder.A4 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment