Malware

About “VirTool:Win32/Obfuscator.AOG” infection

Malware Removal

The VirTool:Win32/Obfuscator.AOG is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What VirTool:Win32/Obfuscator.AOG virus can do?

  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine VirTool:Win32/Obfuscator.AOG?


File Info:

crc32: A7DEFDB4
md5: dbb305a09509add797efbd28a2039472
name: stickam.exe
sha1: ba22cf153cd5d4cc2aa1bd6249fabe15911e1a9e
sha256: ff1ed6831282101a0d5e2993c662fcb7631b492ebc911e5fb0fe650e1dfbfb05
sha512: c8fb93b807121613e2269a3c2e92a42c55fa114238b7c7a9408bed3847ef906b9d22acd9f367391e1f16332fad7e6263f861882c00fcd46a1a8d3db40772ca91
ssdeep: 12288:WUmbR9fb3tFuB/tSduyXWV7bnJ2OekoHqj4VToa4Z2JyLJc5agiekPtk98:0Dfb/uB/QvGbUg4/TofcGJpgNkFs8
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (c) 2012. PremiumSoft CyberTech Ltd.
InternalName: navicat.exe
FileVersion: 10.0.11.0
CompanyName: PremiumSoft CyberTech Ltd.
LegalTrademarks:
Comments:
ProductName: Navicat for MySQL
ProductVersion: 10.0
FileDescription: Navicat for MySQL
OriginalFilename: navicat.exe
Translation: 0x0409 0x04e4

VirTool:Win32/Obfuscator.AOG also known as:

DrWebBackDoor.Tordev.8
MicroWorld-eScanGen:Variant.Symmi.7470
FireEyeGeneric.mg.dbb305a09509add7
McAfeeGenericRXBQ-IH!DBB305A09509
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Generic.4!c
SangforMalware
K7AntiVirusTrojan ( 00403da91 )
BitDefenderGen:Variant.Symmi.7470
K7GWTrojan ( 00403da91 )
Cybereasonmalicious.09509a
TrendMicroTROJ_GEN.R002C0DBS20
BitDefenderThetaGen:NN.ZexaF.34096.Tq0@ayN4dxii
CyrenW32/Fynloski.DTQV-7468
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Dropper.Darkkomet-7139614-0
GDataGen:Variant.Symmi.7470
KasperskyHEUR:Trojan.Win32.Generic
AlibabaVirTool:Win32/Obfuscator.e2189d82
NANO-AntivirusTrojan.Win32.Tordev.bcihzf
ViRobotTrojan.Win32.A.Buzus.556544
TencentWin32.Trojan.Generic.Wuqt
Ad-AwareGen:Variant.Symmi.7470
SophosMal/Generic-S
ComodoTrojWare.Win32.Injector.AAKO@4suwbe
F-SecureDropper.DR/Patched.Ren.Gen8
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.AdwareLinkury.bc
Trapminemalicious.high.ml.score
EmsisoftGen:Variant.Symmi.7470 (B)
IkarusTrojan.SuspectCRC
F-ProtW32/Fynloski.AX
JiangminTrojan/Generic.apioj
AviraDR/Patched.Ren.Gen8
Antiy-AVLTrojan[Backdoor]/Win32.DarkKomet
Endgamemalicious (high confidence)
ArcabitTrojan.Symmi.D1D2E
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftVirTool:Win32/Obfuscator.AOG
AhnLab-V3Backdoor/Win32.DarkKomet.R44657
Acronissuspicious
VBA32TrojanFakeAV.Windef
ALYacGen:Variant.Symmi.7470
MAXmalware (ai score=82)
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/Injector.ZFM
TrendMicro-HouseCallTROJ_GEN.R002C0DBS20
RisingDropper.Generic!8.35E (TFE:5:h2kDLt81F4R)
YandexTrojan.Agent!ukKcooX/oUc
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/Injector.HSZZ!tr
WebrootW32.Trojan.Gen
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_90% (W)
Qihoo-360Win32/Trojan.Dropper.547

How to remove VirTool:Win32/Obfuscator.AOG?

VirTool:Win32/Obfuscator.AOG removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment