Malware

VirTool:Win32/VBInject.TE removal

Malware Removal

The VirTool:Win32/VBInject.TE is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What VirTool:Win32/VBInject.TE virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • Unconventionial language used in binary resources: Greek
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Checks the presence of disk drives in the registry, possibly for anti-virtualization
  • Anomalous binary characteristics

How to determine VirTool:Win32/VBInject.TE?


File Info:

name: 68E33CCA9DEA14F54B67.mlw
path: /opt/CAPEv2/storage/binaries/bd8daa2c1d115c6e718c48b2f9f33fed5d89308292dcca8e683e1b5ced075708
crc32: A8E1F129
md5: 68e33cca9dea14f54b671ca57555c69e
sha1: 2ca50fde635f55149277a770b1d8d3fe64a011f2
sha256: bd8daa2c1d115c6e718c48b2f9f33fed5d89308292dcca8e683e1b5ced075708
sha512: 894b591b6822b8db52f1bfa04e386a6615c250161d2f8d1a00d5906542cfa165c52389f655ff6776e6a5bc552911331d109b3f88c50acb24baa20222ada594d4
ssdeep: 6144:haNRZSJuSJ0rf/ns2PZV89McCm2jdBUj7mThtrafxHwquvjXzK6Bm3vFQm+An5ed:hxcn0Cz/s7mTnapHkvjYqmrppAYXzw9
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C5F4D65D7389D87EF44584F07509A3B024FC383AA1A9A66BFB839F3136E4589E134B47
sha3_384: ce8a902b45051456fd8fa885780c0f0d7ae5db57f6046ceaf2e4be377becd6e108a71b85945f4651019f88d5d6a69a4a
ep_bytes: 688c2f4000e8f0ffffff000000000000
timestamp: 2009-02-13 15:44:41

Version Info:

CompanyName: Gandke & Schubert GmbH
FileDescription:
FileVersion: 2.3.3.0
InternalName:
LegalCopyright:
LegalTrademarks:
OriginalFilename:
ProductName:
ProductVersion: 1.0.0.0
Comments:
Translation: 0x0407 0x04e4

VirTool:Win32/VBInject.TE also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.VBKrypt.4!c
tehtrisGeneric.Malware
MicroWorld-eScanGen:Variant.Jaik.41981
McAfeeArtemis!68E33CCA9DEA
MalwarebytesMachineLearning/Anomalous.95%
ZillyaTrojan.VBKrypt.Win32.211972
SangforSuspicious.Win32.Save.vb
K7AntiVirusTrojan ( 0055e3991 )
AlibabaTrojan:Win32/VBKrypt.f694e498
K7GWTrojan ( 0055e3991 )
CrowdStrikewin/malicious_confidence_100% (D)
CyrenW32/Risk.RLZL-7694
SymantecPacked.Generic.307
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Injector.CFM
APEXMalicious
KasperskyTrojan.Win32.VBKrypt.bzv
BitDefenderGen:Variant.Jaik.41981
NANO-AntivirusTrojan.Win32.VBKrypt.jegqd
ViRobotTrojan.Win32.A.VBKrypt.856064.C
TencentWin32.Trojan.Vbkrypt.Qsmw
EmsisoftGen:Variant.Jaik.41981 (B)
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.MulDrop3.1470
VIPREGen:Variant.Jaik.41981
McAfee-GW-EditionBehavesLike.Win32.Backdoor.bh
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.68e33cca9dea14f5
SophosMal/VBCheMan-C
IkarusTrojan.Win32.VBKrypt
GDataGen:Variant.Jaik.41981
WebrootW32.Trojan.Trojan.gen
AviraTR/Dropper.Gen
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.VBKrypt
XcitiumMalware@#14r7piikpvu7d
ArcabitTrojan.Jaik.DA3FD
ZoneAlarmTrojan.Win32.VBKrypt.bzv
MicrosoftVirTool:Win32/VBInject.TE
CynetMalicious (score: 100)
BitDefenderThetaGen:NN.ZevbaF.36250.Vm0@aaRZdFvO
ALYacGen:Variant.Jaik.41981
TACHYONTrojan/W32.VB-VBKrypt.778240.H
VBA32Trojan.VB.FlyCryptor
Cylanceunsafe
PandaTrj/CI.A
RisingMalware.Undefined!8.C (TFE:4:syNULWGzZhE)
YandexTrojan.GenAsa!1xTGt1LyBe0
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/VBInjector.W!tr
Cybereasonmalicious.a9dea1
DeepInstinctMALICIOUS

How to remove VirTool:Win32/VBInject.TE?

VirTool:Win32/VBInject.TE removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment