Malware

VirTool:Win32/Vtub.RT malicious file

Malware Removal

The VirTool:Win32/Vtub.RT is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What VirTool:Win32/Vtub.RT virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine VirTool:Win32/Vtub.RT?


File Info:

name: D4406125FD7444AA7AB7.mlw
path: /opt/CAPEv2/storage/binaries/058ed5fd4615eebd8035914b25dc466c1767b71bda254487f16c3186178afd50
crc32: 040037D3
md5: d4406125fd7444aa7ab70dd2bd6cd419
sha1: 079b7cc8dd54579d31ef71751c80e6b63d66da4f
sha256: 058ed5fd4615eebd8035914b25dc466c1767b71bda254487f16c3186178afd50
sha512: f642f098475aafb804de081542c19382aee60af75e6d2a514c442666b6c08d8c17d296ea550f74c270963b5eaa30adcd2e9e44596df0c93ebfb5c11c7eb8ea8d
ssdeep: 384:vUTIPmgdiVUm99KCy1RZ6zCDE045HzT0t9OwFRyOFFY:4I+2nm9ACyZzARQt9OwFR5FFY
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B013B593879EC758E028C572434D4EADE344FD048A958BF60C2D776DDDF361236E1AA2
sha3_384: 148b6f92a1e4772c6bdb9bdc3c371b1d11d7873edf0baa5b8b785658d3346b8df2546f1f64026163b27cfd9df0f68c4c
ep_bytes: 660599006683e8076683f0059066f7d0
timestamp: 2007-12-27 13:23:35

Version Info:

Translation: 0x0409 0x04b0

VirTool:Win32/Vtub.RT also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.Heur.cmW@rnVU!Nqiy
FireEyeGeneric.mg.d4406125fd7444aa
SkyhighBehavesLike.Win32.Autorun.pz
McAfeeGenericRXAA-AA!D4406125FD74
Cylanceunsafe
ZillyaBackdoor.Poison.Win32.84445
SangforSuspicious.Win32.Save.vb
K7AntiVirusBackdoor ( 0006194e1 )
AlibabaWorm:Win32/Injector.74631736
K7GWBackdoor ( 0006194e1 )
BitDefenderThetaAI:Packer.36D68DE51D
VirITBackdoor.Win32.Poison.OXF
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Injector.DF
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.VB-4033
KasperskyWorm.Win32.WBNA.roc
BitDefenderGen:Trojan.Heur.cmW@rnVU!Nqiy
NANO-AntivirusTrojan.Win32.VB.brtgk
SUPERAntiSpywareTrojan.Agent/Gen-NameThief[Smart]
AvastWin32:VB-HDS [Trj]
TencentMalware.Win32.Gencirc.115a1166
EmsisoftGen:Trojan.Heur.cmW@rnVU!Nqiy (B)
F-SecureTrojan.TR/Crypt.CFI.Gen
DrWebTrojan.MulDrop.9992
VIPREGen:Trojan.Heur.cmW@rnVU!Nqiy
TrendMicroTROJ_VB.ASB
Trapminesuspicious.low.ml.score
SophosMal/EncPk-FL
SentinelOneStatic AI – Malicious PE
JiangminWorm.WBNA.rmqz
GoogleDetected
AviraTR/Crypt.CFI.Gen
VaristW32/Backdoor.XHFM-1265
Antiy-AVLTrojan/Win32.VB
KingsoftWin32.Worm.WBNA.roc
MicrosoftVirTool:Win32/Vtub.RT
XcitiumBackdoor@#a1cf3e0vdwsw
ArcabitTrojan.Heur.EBC5AB
ZoneAlarmWorm.Win32.WBNA.roc
GDataGen:Trojan.Heur.cmW@rnVU!Nqiy
CynetMalicious (score: 99)
AhnLab-V3Worm/Win32.Basun.R1388
VBA32Malware-Cryptor.VB.gen.1
ALYacGen:Trojan.Heur.cmW@rnVU!Nqiy
MAXmalware (ai score=100)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_VB.ASB
RisingHackTool.Vtub!8.5D8 (TFE:5:naGTPNJUdUQ)
YandexTrojan.GenAsa!pYhL3cuMK9k
IkarusVirus.Win32.VB.FEW
MaxSecureTrojan.Malware.5322255.susgen
FortinetW32/VBInjector.fam!tr
AVGWin32:VB-HDS [Trj]
DeepInstinctMALICIOUS
alibabacloudWorm:Win/WBNA.roc

How to remove VirTool:Win32/Vtub.RT?

VirTool:Win32/Vtub.RT removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment