Malware

VirTool:Win32/VBInject!MSR malicious file

Malware Removal

The VirTool:Win32/VBInject!MSR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What VirTool:Win32/VBInject!MSR virus can do?

  • Authenticode signature is invalid
  • Performs a large number of encryption calls using the same key possibly indicative of ransomware file encryption behavior

How to determine VirTool:Win32/VBInject!MSR?


File Info:

name: 57E20689F7F90C515A8D.mlw
path: /opt/CAPEv2/storage/binaries/04fc0ecb3a582b558baacff126898f7f1d6016421fb2ffb51c218c7a4617537d
crc32: 57DDD2C9
md5: 57e20689f7f90c515a8d2f5cb07629a4
sha1: 603c57fe71f866beaff7d50fa17faabed27811fc
sha256: 04fc0ecb3a582b558baacff126898f7f1d6016421fb2ffb51c218c7a4617537d
sha512: a6c57eb088ea942859784fc6a139775242e18c57721c03e2492a46a585e3f583783694af97ab4315cf3525b9a90e483c8083ffc7b7cc7e16f0a3b30da26ed9d3
ssdeep: 24576:C/3IkyJeb1ZEFIQw3WZ2rQUJJu2STJl4YgV2PVpnkXM:ciYR6TJD6ank
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1DB457B31B1B28837C0631B385D6FA7A9A43ABF012A38C88767F15D4C1F796517A293D7
sha3_384: 98802a4b9ad24b700b7f11807ec78f46d07fee5dbd8a548e53289d63403e2d6c39444659d82b8582f8f1fdea013309cc
ep_bytes: eb1066623a432b2b484f4f4b90e99860
timestamp: 2020-07-24 11:38:31

Version Info:

0: [No Data]

VirTool:Win32/VBInject!MSR also known as:

LionicHacktool.Win32.Shellcode.3!c
DrWebBackDoor.Rat.281
MicroWorld-eScanGen:Variant.Bulz.4167
FireEyeGeneric.mg.57e20689f7f90c51
SkyhighArtemis!Trojan
McAfeeArtemis!57E20689F7F9
Cylanceunsafe
VIPREGen:Variant.Bulz.4167
SangforTrojan.Win32.CryptInject.MSR
K7AntiVirusTrojan ( 0056bbdb1 )
AlibabaExploit:Win32/Shellcode.e160aed3
K7GWTrojan ( 0056bbdb1 )
CrowdStrikewin/malicious_confidence_100% (W)
ArcabitTrojan.Bulz.D1047
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Injector.EMTS
CynetMalicious (score: 100)
APEXMalicious
KasperskyExploit.Win32.Shellcode.rei
BitDefenderGen:Variant.Bulz.4167
NANO-AntivirusExploit.Win32.Shellcode.hznufy
AvastWin32:Malware-gen
TencentWin32.Exploit.Shellcode.Ozfl
EmsisoftGen:Variant.Bulz.4167 (B)
F-SecureHeuristic.HEUR/AGEN.1368316
ZillyaExploit.Shellcode.Win32.12
SophosMal/Generic-S
IkarusTrojan.Win32.Injector
JiangminExploit.ShellCode.aje
WebrootW32.Malware.Gen
AviraHEUR/AGEN.1368316
Antiy-AVLTrojan[Exploit]/Win32.ShellCode
XcitiumMalware@#1i4bb3fjl4qp7
MicrosoftVirTool:Win32/VBInject!MSR
ZoneAlarmExploit.Win32.Shellcode.rei
GDataGen:Variant.Bulz.4167
GoogleDetected
VBA32Malware-Cryptor.Trac
ALYacGen:Variant.Bulz.4167
MAXmalware (ai score=100)
MalwarebytesMalware.AI.2456345238
PandaTrj/GdSda.A
RisingBackdoor.Remcos!8.B89E (TFE:6:KNHo0wfXCOI)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Injector.EPOY!tr
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove VirTool:Win32/VBInject!MSR?

VirTool:Win32/VBInject!MSR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment