Malware

VirTool:Win32/VBInject!BH removal tips

Malware Removal

The VirTool:Win32/VBInject!BH is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What VirTool:Win32/VBInject!BH virus can do?

  • Executable code extraction
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz

How to determine VirTool:Win32/VBInject!BH?


File Info:

crc32: 4E8DE8EB
md5: eea57dfe66b92af2fb3e30a555222fd7
name: EEA57DFE66B92AF2FB3E30A555222FD7.mlw
sha1: 5485f922f550bb54c26199251210cfdc78a87541
sha256: cf38b8f68ac0f6cc765c4c01541b47ff455010f8b6d322f3322a8fca8af39977
sha512: e2c6bb573f89869f11c5e48a785a72a27d90591f6f4009554569070aae7206b1dbb6746b52010f302381fef185380a2a8ba4e77e847add6240024bdd3b28d5d1
ssdeep: 6144:oFGEpiSqpnQoSNddO8UfdT9U6jJ+VUIT0R2fQKEE3o+D:glqFBSNiVT9Uo+VUIT0R2oKEko+D
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright 2011 Facebook Inc.
InternalName: Facebook Update
FileVersion: 1.2.203.0
CompanyName: Facebook Inc.
Privatebuild:
ProductName: Facebook Update
ProductVersion: 1.2.203.0
FileDescription: Facebook Installer
OriginalFilename: FacebookUpdate.exe
Translation: 0x0400 0x04b0

VirTool:Win32/VBInject!BH also known as:

K7AntiVirusRiskware ( 0040eff71 )
LionicTrojan.Win32.Blocker.j!c
Elasticmalicious (high confidence)
DrWebTrojan.Siggen4.19743
CynetMalicious (score: 99)
ALYacTrojan.Generic.7772605
CylanceUnsafe
ZillyaTrojan.Blocker.Win32.9375
AlibabaRansom:Win32/Blocker.5ed48fcb
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.e66b92
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:VBCrypt-BAV [Trj]
KasperskyTrojan-Ransom.Win32.Blocker.bljh
BitDefenderTrojan.Generic.7772605
NANO-AntivirusTrojan.Win32.Blocker.ekpwgp
MicroWorld-eScanTrojan.Generic.7772605
TencentMalware.Win32.Gencirc.114b2147
Ad-AwareTrojan.Generic.7772605
SophosMal/Generic-S
ComodoMalware@#2wl9gzdn4yvrh
BitDefenderThetaGen:NN.ZevbaCO.34142.xm1@aKjcEPcG
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Fareit.fm
FireEyeGeneric.mg.eea57dfe66b92af2
EmsisoftTrojan.Generic.7772605 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Blocker.bdm
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Generic.ASMalwS.37FD66
KingsoftWin32.HeurC.KVM099.a.(kcloud)
MicrosoftVirTool:Win32/VBInject.gen!BH
ArcabitTrojan.Generic.D7699BD
ZoneAlarmTrojan-Ransom.Win32.Blocker.bljh
GDataTrojan.Generic.7772605
McAfeeGenericR-EMP!EEA57DFE66B9
MAXmalware (ai score=83)
VBA32Malware-Cryptor.VB.gen.1
MalwarebytesMalware.AI.3146134158
PandaTrj/Genetic.gen
YandexTrojan.DR.Agent!kLdu01O4sfQ
IkarusTrojan.Win32.VBKrypt
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:VBCrypt-BAV [Trj]
Paloaltogeneric.ml

How to remove VirTool:Win32/VBInject!BH?

VirTool:Win32/VBInject!BH removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment