Malware

How to remove “VirTool:Win32/VBInject!BK”?

Malware Removal

The VirTool:Win32/VBInject!BK is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What VirTool:Win32/VBInject!BK virus can do?

  • Sample contains Overlay data
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine VirTool:Win32/VBInject!BK?


File Info:

name: C4D796447FA89B755F7D.mlw
path: /opt/CAPEv2/storage/binaries/1ef6864a92737e43b9663c6ae8abb98d3fe5830879e7fe8c3423cb3eba00cf41
crc32: A4C999AC
md5: c4d796447fa89b755f7dda688cca38ec
sha1: 8e5698349a0af366b5bd33e4a5a72d89281f2d08
sha256: 1ef6864a92737e43b9663c6ae8abb98d3fe5830879e7fe8c3423cb3eba00cf41
sha512: 443c99041fc7138e2903cced452f52c42226c5194606ba0d6f7703ccbe8c9c97b54d6cb264bd9b30c603be140b1e9bad30de5d7607db9596179cd6993234bc46
ssdeep: 3072:SjLrgmyG3KOsxVuqbW5PXbMAlkJhcFKD4DfSowV/1bT9:SFcV8PtlMmW4LSoK/h9
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T104F3ACB9A2F4867EE17A9872B259C273A1BA355D974F1F07C90913B49834F4D2B31B03
sha3_384: 49c5e54684783437023c0f7b11ee536695c4bc3383881720abdb83b8269947c552544afc9823431171f86d1722d64f6c
ep_bytes:
timestamp: 2009-07-05 15:43:52

Version Info:

0: [No Data]

VirTool:Win32/VBInject!BK also known as:

BkavW32.AIDetectMalware
DrWebBackDoor.Poison.686
FireEyeGeneric.mg.c4d796447fa89b75
SkyhighBehavesLike.Win32.VBObfus.cc
SangforSuspicious.Win32.Save.vb
AlibabaVirTool:Win32/VBInject.dade765c
Cybereasonmalicious.49a0af
SymantecSpyware.Perfect
Elasticmalicious (high confidence)
APEXMalicious
ClamAVWin.Trojan.Poison-7008255-0
NANO-AntivirusVirus.Win32.Gen.ccmw
AvastWin32:GenMalicious-KKX [Trj]
RisingTrojan.VBInject!1.6541 (CLASSIC)
TrendMicroCryp_Xed-15
Trapminemalicious.high.ml.score
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
MAXmalware (ai score=98)
GoogleDetected
VaristW32/VBcrypt.B.gen!Eldorado
Kingsoftmalware.kb.a.1000
XcitiumMalware@#1hvz2ou5xf55w
MicrosoftVirTool:Win32/VBInject.gen!BK
CynetMalicious (score: 100)
Cylanceunsafe
PandaTrj/CI.A
ZonerProbably Heur.ExeHeaderL
TrendMicro-HouseCallCryp_Xed-15
YandexTrojan.GenAsa!g/k2AVZ9tNk
IkarusWorm.Win32.VBNA
FortinetPossibleThreat
AVGWin32:GenMalicious-KKX [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (D)

How to remove VirTool:Win32/VBInject!BK?

VirTool:Win32/VBInject!BK removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment