Malware

VirTool:Win32/VBInject!ML information

Malware Removal

The VirTool:Win32/VBInject!ML is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What VirTool:Win32/VBInject!ML virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Dynamic (imported) function loading detected
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine VirTool:Win32/VBInject!ML?


File Info:

name: 4B62FBD8C4290D740B57.mlw
path: /opt/CAPEv2/storage/binaries/ec4a69e875e7ee81d7ee1b23c113d6771ef2e7bac380f1e1b4f6c2ac569f59ae
crc32: 82E6FDA6
md5: 4b62fbd8c4290d740b578ccaada33b20
sha1: 76b2126dbdf2aa2a65d32725524b41861d722a8d
sha256: ec4a69e875e7ee81d7ee1b23c113d6771ef2e7bac380f1e1b4f6c2ac569f59ae
sha512: 6513e4b47fa3759090b8e5e288343eca48fdc82ace1c30bf8325e388313f627362d8e4770cc8df46ecfb23e3cb82384ebd3d4c14104a57e94b95f8eb0425a101
ssdeep: 1536:8tqDQhx0vBa2gcDRRmPrnEQfjM3tPDoH:8BHiBNgQ7mP44MVD
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T193835B1BB3A5C984D05A467158A7D7E097337C344D570A873A60BB2F6DB2F206F1BA43
sha3_384: 59032825a4bcf0902b10f5b5dc4370df65490fad9f55ac0641a917dc9c0b7dda1ac1f677c539bb7ea4dd6a30cddf6ac2
ep_bytes: 6848124000e8eeffffff000000000000
timestamp: 2014-10-22 07:56:31

Version Info:

Translation: 0x0409 0x04b0
CompanyName: fdfdcvgthb
ProductName: nknkujikjnԅ
FileVersion: 6.01
ProductVersion: 6.01
InternalName: H7000100
OriginalFilenameԀ7000100.exe:

VirTool:Win32/VBInject!ML also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Ransom.28
CAT-QuickHealTrojan.VBCrypt.MF.1517
McAfeeGamarue-FBA!4B62FBD8C429
CylanceUnsafe
SangforVISUAL BASIC4
CrowdStrikewin/malicious_confidence_100% (D)
CyrenW32/Trojan.LXSR-7765
SymantecTrojan.Gen.2
ESET-NOD32Win32/TrojanDownloader.Wauchos.AF
APEXMalicious
ClamAVWin.Trojan.Androm-14
KasperskyBackdoor.Win32.Androm.ffkv
BitDefenderGen:Variant.Ransom.28
AvastFileRepMalware [Misc]
Ad-AwareGen:Variant.Ransom.28
EmsisoftGen:Variant.Ransom.28 (B)
F-SecureTrojan.TR/PSW.Tepfer.sydhs
DrWebBackDoor.Andromeda.404
McAfee-GW-EditionGamarue-FBA!4B62FBD8C429
FireEyeGeneric.mg.4b62fbd8c4290d74
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Ransom.28
JiangminBackdoor/Androm.dhv
AviraTR/PSW.Tepfer.sydhs
MAXmalware (ai score=85)
ArcabitTrojan.Ransom.28
SUPERAntiSpywareTrojan.Agent/Gen-FalComp
MicrosoftVirTool:Win32/VBInject.gen!ML
CynetMalicious (score: 100)
AhnLab-V3Dropper/Win32.Necurs.R120679
VBA32SScope.Malware-Cryptor.Zbot
ALYacGen:Variant.Ransom.28
MalwarebytesTrojan.Crypt.NKN
RisingBackdoor.Win32.Androm.le (CLASSIC)
YandexTrojan.GenAsa!9jbO/GChXL8
IkarusTrojan.Win32.VBKryjetor
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Injector.BJHT!tr
BitDefenderThetaGen:NN.ZevbaF.34606.fm0@aGLMRohG
AVGFileRepMalware [Misc]
Cybereasonmalicious.8c4290

How to remove VirTool:Win32/VBInject!ML?

VirTool:Win32/VBInject!ML removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment