Malware

About “Win32/VB.OBP” infection

Malware Removal

The Win32/VB.OBP is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/VB.OBP virus can do?

  • Executable code extraction
  • Unconventionial language used in binary resources: Spanish (Modern)
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/VB.OBP?


File Info:

crc32: 4B19F36D
md5: fb0f6125c90e13012e54a246a8c55370
name: FB0F6125C90E13012E54A246A8C55370.mlw
sha1: de97afcd979bbb80c7c409c1fa8b32e275486a33
sha256: 0395b75fffaa55502e4098199804a04e4f0d4e6e633712004cf5c713a69244c0
sha512: cf27fd6513a363be408e8a68a1edecc97d38db11377784e531eef1bf69e5310f796cbd6698bbf7f5785d6e68ecc67ba339e5cd900a4e8552a97c630988a4edeb
ssdeep: 1536:ndZBZG8DchXJ+Hhgkjzye+IDbhBeQyB3FHqbG8FL:dbZQXJsjvphcJqn
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0c0a 0x04b0
InternalName: REMOTE_SERVER
FileVersion: 1.02
CompanyName: IndiSof Corporation
ProductName: REMOTE CONTROL 1.2
ProductVersion: 1.02
OriginalFilename: REMOTE_SERVER.exe

Win32/VB.OBP also known as:

BkavW32.AIDetect.malware2
K7AntiVirusP2PWorm ( 0055e3ea1 )
LionicTrojan.Win32.Generic.4!c
DrWebBACKDOOR.Trojan
CylanceUnsafe
ZillyaTrojan.VB.Win32.146286
AlibabaTrojan:Win32/ATRAPS.b34256f3
K7GWP2PWorm ( 0055e3ea1 )
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win32/VB.OBP
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Trojan.Generic-9837964-0
KasperskyHEUR:Trojan.Win32.Generic
NANO-AntivirusTrojan.Win32.VB.dunnje
TencentWin32.Trojan.Atraps.Eckd
SophosMal/Generic-S
BitDefenderThetaAI:Packer.52E3865F1E
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Trojan.mm
JiangminTrojan/Generic.bhdue
AviraTR/ATRAPS.Gen
eGambitGeneric.Backdoor
Antiy-AVLTrojan/Generic.ASMalwS.12E77BF
MicrosoftTrojan:Win32/Occamy.C03
McAfeeArtemis!FB0F6125C90E
MAXmalware (ai score=100)
YandexTrojan.GenAsa!oiB1GQn9j78
IkarusBackdoor.VB.SK
AVGWin32:Malware-gen

How to remove Win32/VB.OBP?

Win32/VB.OBP removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment