Malware

VirTool:Win32/VBInject.PB!bit removal

Malware Removal

The VirTool:Win32/VBInject.PB!bit is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What VirTool:Win32/VBInject.PB!bit virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine VirTool:Win32/VBInject.PB!bit?


File Info:

crc32: E9A11C13
md5: bfd09bafe0a174c379519da857e7a213
name: ABF6AB.exe
sha1: 6363d020ef112dea8e9c00d739faff917e459ba0
sha256: b7dee12df4e82bbf11c73443f4371977caa38ada969256ac0f7973f2bf9e51ee
sha512: 5c91ab885bf691d7b0f990d46dfd3331651d829baacda9f02f6fc65d13a460329bf72eac2d63e8e4d86d81468383f731025a7462f7cffcde6d76558a0d5c4fce
ssdeep: 3072:w8FUjjgB0PvbPMM1lQTsvHdGk7uOwdkGf75Aoo/Ba51hAtB5wMH3pZB:w8F29P7F1lJv9NKO/P/8Qqs
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: Pupivora2
FileVersion: 1.09.0007
CompanyName: pearus Security GcbH
ProductName: Uorldcoin
ProductVersion: 1.09.0007
FileDescription: oexas Instruments ancorporated
OriginalFilename: Pupivora2.exe

VirTool:Win32/VBInject.PB!bit also known as:

MicroWorld-eScanGen:Heur.PonyStealer.Em2@dyvifili
FireEyeGeneric.mg.bfd09bafe0a174c3
CAT-QuickHealTrojan.Mucc
McAfeePacked-QD!BFD09BAFE0A1
ZillyaTrojan.Mucc.Win32.280
AegisLabTrojan.Win32.Mucc.tpkE
SangforMalware
K7AntiVirusTrojan ( 005166341 )
BitDefenderGen:Heur.PonyStealer.Em2@dyvifili
K7GWTrojan ( 005166341 )
Cybereasonmalicious.fe0a17
TrendMicroBKDR_TOFSEE.SMF
BitDefenderThetaGen:NN.ZevbaF.33558.Em2@ayvifili
CyrenW32/Fareit.AZ.gen!Eldorado
SymantecInfostealer.Lokibot
TrendMicro-HouseCallBKDR_TOFSEE.SMF
Paloaltogeneric.ml
GDataGen:Heur.PonyStealer.Em2@dyvifili
KasperskyTrojan.Win32.Mucc.cds
AlibabaTrojan:Win32/Injector.a2d3d47c
NANO-AntivirusTrojan.Win32.Mucc.esugxx
APEXMalicious
RisingTrojan.Kryptik!1.AE12 (CLASSIC)
Ad-AwareGen:Heur.PonyStealer.Em2@dyvifili
SophosMal/FareitVB-N
ComodoMalware@#1fxluh14xvtto
F-SecureHeuristic.HEUR/AGEN.1022787
VIPRETrojan.Win32.Generic!BT
Invinceaheuristic
McAfee-GW-EditionPacked-QD!BFD09BAFE0A1
Trapminemalicious.high.ml.score
EmsisoftGen:Heur.PonyStealer.Em2@dyvifili (B)
SentinelOneDFI – Malicious PE
F-ProtW32/Fareit.AZ.gen!Eldorado
JiangminTrojan.Mucc.gb
WebrootW32.Mucc.cds
AviraHEUR/AGEN.1022787
MAXmalware (ai score=99)
Antiy-AVLTrojan/Win32.TSGeneric
Endgamemalicious (high confidence)
ArcabitTrojan.PonyStealer.EABD37
ZoneAlarmTrojan.Win32.Mucc.cds
MicrosoftVirTool:Win32/VBInject.PB!bit
AhnLab-V3Win-Trojan/VBKrypt.RP02.X1828
Acronissuspicious
VBA32TScope.Trojan.VB
ALYacGen:Heur.PonyStealer.Em2@dyvifili
ESET-NOD32a variant of Win32/Injector.DRTN
YandexTrojan.Injector!7SzUPakXXAU
IkarusTrojan.VB.Crypt
eGambitPE.Heur.InvalidSig
FortinetW32/FareitVB.KAD!tr
AVGWin32:Malware-gen
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360HEUR/QVM03.0.F25C.Malware.Gen

How to remove VirTool:Win32/VBInject.PB!bit?

VirTool:Win32/VBInject.PB!bit removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment