Malware

VirTool:Win32/VBInject.ACQ!bit removal instruction

Malware Removal

The VirTool:Win32/VBInject.ACQ!bit is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What VirTool:Win32/VBInject.ACQ!bit virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine VirTool:Win32/VBInject.ACQ!bit?


File Info:

crc32: 73F6600E
md5: 8bb18b475567b8ca925c0579edafeef6
name: 8BB18B475567B8CA925C0579EDAFEEF6.mlw
sha1: 2001d58afa9266b364cd6a9d4edb9493f43b43f6
sha256: e1108eed1eab9e6eac2d48139776a585b56ec575b1f8e41ed40099e8d6c93778
sha512: 76765a1679d1b6e56d41300580167131ca73156b36e0c0ec409242a24a7ac282d16178351eabfc0ec24e0b15d9c9d9251ee3daf12e7ded7b970aec583909019b
ssdeep: 6144:PR9+z1VuJN82NKm9VL3osj3G+jLz4kHw3N3KuF7xdDiUY4/2pAeAL1Zgq:iz1cn8I39Lz1Q3NauF7xdDd/D1Lcq
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: dacryocystalgia
InternalName: Wilkerson2
FileVersion: 9.03.0004
CompanyName: Tangamma10
LegalTrademarks: turiuara
Comments: eroticism
ProductName: drawcut10
ProductVersion: 9.03.0004
OriginalFilename: Wilkerson2.exe

VirTool:Win32/VBInject.ACQ!bit also known as:

BkavW32.AIDetectVM.malware1
K7AntiVirusTrojan ( 005445871 )
CynetMalicious (score: 100)
ALYacGen:Heur.PonyStealer.Om1@dKtlngdi
CylanceUnsafe
ZillyaTrojan.Coins.Win32.2642
SangforMalware
CrowdStrikewin/malicious_confidence_90% (D)
AlibabaTrojanPSW:Win32/Coins.9cb5163c
K7GWTrojan ( 005445871 )
Cybereasonmalicious.75567b
TrendMicroTrojan.Win32.MALREP.THOAOGAI
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.ECNH
APEXMalicious
ClamAVWin.Trojan.Razy-6824071-0
GDataGen:Heur.PonyStealer.Om1@dKtlngdi
KasperskyTrojan-PSW.Win32.Coins.orc
BitDefenderGen:Heur.PonyStealer.Om1@dKtlngdi
NANO-AntivirusTrojan.Win32.Coins.fngkpg
SUPERAntiSpywareTrojan.Agent/Gen-Injector
MicroWorld-eScanGen:Heur.PonyStealer.Om1@dKtlngdi
TencentWin32.Trojan-qqpass.Qqrob.Edxp
Ad-AwareGen:Heur.PonyStealer.Om1@dKtlngdi
SophosMal/FareitVB-N
ComodoMalware@#24w2i6xx0pxph
BitDefenderThetaGen:NN.ZevbaF.34130.Om1@aKtlngdi
VIPRETrojan.Win32.Generic!BT
Invinceaheuristic
Trapminesuspicious.low.ml.score
FireEyeGeneric.mg.8bb18b475567b8ca
EmsisoftGen:Heur.PonyStealer.Om1@dKtlngdi (B)
SentinelOneDFI – Suspicious PE
Endgamemalicious (high confidence)
eGambitPE.Heur.InvalidSig
Antiy-AVLTrojan[PSW]/Win32.Coins
MicrosoftVirTool:Win32/VBInject.ACQ!bit
JiangminTrojan.PSW.Coins.cgt
ArcabitTrojan.PonyStealer.E54EEC
AegisLabTrojan.Win32.Coins.4!c
ZoneAlarmTrojan-PSW.Win32.Coins.orc
AhnLab-V3Win-Trojan/VBKrypt.RP06.X1898
McAfeeFareit-FNF!8BB18B475567
MAXmalware (ai score=100)
VBA32TrojanPSW.Coins
PandaTrj/GdSda.A
TrendMicro-HouseCallTrojan.Win32.MALREP.THOAOGAI
RisingTrojan.Injector!1.B459 (CLOUD)
YandexTrojan.PWS.Coins!
IkarusTrojan.Win32.Injector
MaxSecureTrojan.Malware.74061275.susgen
FortinetW32/Injector.EIGD!tr
AVGFileRepMalware
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.8d3

How to remove VirTool:Win32/VBInject.ACQ!bit?

VirTool:Win32/VBInject.ACQ!bit removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment