Malware

Win32/VB.FV (file analysis)

Malware Removal

The Win32/VB.FV is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/VB.FV virus can do?

  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Authenticode signature is invalid

How to determine Win32/VB.FV?


File Info:

name: 2921540A5D5133C17E76.mlw
path: /opt/CAPEv2/storage/binaries/33170e72a423e3129bb40438def72c976bc375ce9a9d843bf42656cda5ab9a22
crc32: DFAF0DDB
md5: 2921540a5d5133c17e76649c0a2b1ce4
sha1: 2764b2b56628151b39c0d53c2d934c1ca0b7d1b0
sha256: 33170e72a423e3129bb40438def72c976bc375ce9a9d843bf42656cda5ab9a22
sha512: 8cf0ff0bd4d0d8148b8daf7ac359d35e9f32700739f34e6a306299bfcf604b9095cb5872fe1e50d126ed441f0116f631a8f529d4ac94c26a6fbce323ea064da4
ssdeep: 768:pIsMmaXG/lKg4W+TMkWHS7wLVagKrX4WSMIJDXAHsQEq:pI+Yg4W+TMkWHSEhagKrIWSAHsQ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T14623B527F61AE517F64AC0F52C35A69E585A7D301081237377C6BE892972EE2E84870F
sha3_384: bbcf54d9fb1f33cac1b816ec046442f371b5d72d8e3f9ef15f600f5790a5bf8709cb88eb74824e8221f112ef7c109f32
ep_bytes: 68d41e4000e8eeffffff000000000000
timestamp: 2003-02-12 07:03:54

Version Info:

Translation: 0x0804 0x04b0
CompanyName: 阿智工作室
LegalCopyright: 免费
ProductName: 边锋杀手3.0专用捆绑器
FileVersion: 1.00
ProductVersion: 1.00
InternalName: BENBIN
OriginalFilename: BENBIN.EXE

Win32/VB.FV also known as:

CylanceUnsafe
ZillyaBackdoor.VB.Win32.5380
K7AntiVirusP2PWorm ( 0055e3ea1 )
K7GWP2PWorm ( 0055e3ea1 )
CyrenW32/Backdoor.HRQV-2012
SymantecTrojan.Zbot
ESET-NOD32Win32/VB.FV
KasperskyBackdoor.Win32.VB.fv
ComodoBackdoor.Win32.VB.FV@3rny
McAfee-GW-EditionPWS-Benkill
JiangminTrojan/BfPass.BenBin.a
AviraTR/PSW.QQpass.676
Antiy-AVLTrojan/Generic.ASMalwS.4FD6D2
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 99)
AhnLab-V3Trojan/Win32.QQPass.C1034
McAfeePWS-Benkill
VBA32Backdoor.VB
TencentWin32.Backdoor.Vb.poz
YandexTrojan.GenAsa!aUU4k3pOd7Y
eGambitUnsafe.AI_Score_99%
AVGWin32:Malware-gen
AvastWin32:Malware-gen

How to remove Win32/VB.FV?

Win32/VB.FV removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment