Malware

Win32/Injector.BVVR removal tips

Malware Removal

The Win32/Injector.BVVR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Injector.BVVR virus can do?

  • At least one process apparently crashed during execution
  • Dynamic (imported) function loading detected
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine Win32/Injector.BVVR?


File Info:

name: 56069990A7665B3ECBF4.mlw
path: /opt/CAPEv2/storage/binaries/53796194d9fc6739de6604d762ccdd7d202ee99a50f33f0c1b148cb5a8f9787b
crc32: 87EA9F95
md5: 56069990a7665b3ecbf478343a55e822
sha1: d668de620b2728e99bdfdf4bd3ef360426897c5f
sha256: 53796194d9fc6739de6604d762ccdd7d202ee99a50f33f0c1b148cb5a8f9787b
sha512: 119cd5302d6d1d6f576bbc714dc707ae9e5f60f20a6931c7e63b40fb7bfc1ccdc937a903011ccff75b76d5d52815afb9ad69d739a4c253ad0df6d6df679ecdaa
ssdeep: 3072:BFzigOYFAp95nxhWYFX2bjOsxUHP+mzsKg:BFegOR75nxhJ2nOsxUHPO
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T120D33907630185A6C26B453069536F2A9BBDECB40ED44643EF827F4D2C7466AFE25E0F
sha3_384: 56b0cfcc8d54f40e30e143d820b45b140a187468e9fbd33c7d684ec8eb1c2ea69ef8bc57a0320df31835c4c56e2a2a14
ep_bytes: 558bec6aff68f05e400068603e400064
timestamp: 2020-05-07 08:33:27

Version Info:

Comments:
CompanyName: king工作室
FileDescription: install
FileVersion: 1, 0, 0, 1
InternalName: install
LegalCopyright: 版权所有(C) 2020
LegalTrademarks:
OriginalFilename: install.dat
PrivateBuild:
ProductName: king工作室 install
ProductVersion: 1, 0, 0, 1
SpecialBuild:
Translation: 0x0804 0x04b0

Win32/Injector.BVVR also known as:

MicroWorld-eScanGen:Variant.Graftor.538546
ALYacGen:Variant.Graftor.538546
CylanceUnsafe
Sangfor[ARMADILLO V1.71]
Cybereasonmalicious.0a7665
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Injector.BVVR
APEXMalicious
KasperskyBackdoor.Win32.Farfli.brvi
BitDefenderGen:Variant.Graftor.538546
NANO-AntivirusTrojan.Win32.Farfli.ircokk
AvastWin32:Agent-EPC [Trj]
Ad-AwareGen:Variant.Graftor.538546
EmsisoftGen:Variant.Graftor.538546 (B)
ComodoTrojWare.Win32.Kryptik.WN@4p3oqw
F-SecureHeuristic.HEUR/AGEN.1205717
DrWebTrojan.Siggen18.2949
McAfee-GW-EditionArtemis
FireEyeGeneric.mg.56069990a7665b3e
SophosML/PE-A
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Graftor.538546
JiangminBackdoor.Farfli.cyp
AviraHEUR/AGEN.1205717
ArcabitTrojan.Graftor.D837B2
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
Acronissuspicious
McAfeeArtemis!56069990A766
MAXmalware (ai score=88)
RisingBackdoor.Farfli!1.64D7 (CLASSIC)
YandexTrojan.GenAsa!Ox+dBMgUVXs
IkarusBackdoor.Win32.PcClient
MaxSecureTrojan.Malware.300983.susgen
BitDefenderThetaGen:NN.ZexaF.34712.iq0@a8XGXVeb
AVGWin32:Agent-EPC [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Win32/Injector.BVVR?

Win32/Injector.BVVR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment