Malware

How to remove “Win32:VB-AELN [Trj]”?

Malware Removal

The Win32:VB-AELN [Trj] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32:VB-AELN [Trj] virus can do?

  • Executable code extraction
  • A process attempted to delay the analysis task.
  • Performs some HTTP requests
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
ftp.eazycop.dominiotemporario.com
edgedl.gvt1.com

How to determine Win32:VB-AELN [Trj]?


File Info:

crc32: 827292AA
md5: a3be0cfd4cc9192946b2dbed0e04b20d
name: A3BE0CFD4CC9192946B2DBED0E04B20D.mlw
sha1: a7faab1127df8a114a31fc5d9380714074766f05
sha256: f5257b7fa5d7c8185c7b46a694c1bfbcc87ced54c7ddf2396d664b30b34d5f52
sha512: 09dda15e08fd199cb3babca7d5dcbb3b703f2fe79f65d0f2a21cca788908a2ed2add3e3e8f5db6be0b0c5ca762846769b2df2cb2ba7f9e2aeacc836d52a328e1
ssdeep: 768:piKpTPzHsL7ZEAKRpFFkemfXZw35jAG7Qeoa0xtr/MoVetMgYYYDDb:piKhIEAEF+JW5jktAOZb
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
LegalCopyright: QKsoft ce.
InternalName: facebooeskkkkk
FileVersion: 1.00
CompanyName: QKsoft ce.
LegalTrademarks: QKsoft ce.
Comments: QKsoft ce.
ProductName: QKsoft
ProductVersion: 1.00
FileDescription: QKsoft ce Files.
OriginalFilename: facebooeskkkkk.exe

Win32:VB-AELN [Trj] also known as:

BkavW32.AIDetectVM.malware1
MicroWorld-eScanGen:Trojan.Heur.VP.dm0@a4araemi
FireEyeGen:Trojan.Heur.VP.dm0@a4araemi
Qihoo-360Win32/Trojan.Spy.e91
ALYacGen:Trojan.Heur.VP.dm0@a4araemi
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderGen:Trojan.Heur.VP.dm0@a4araemi
K7GWNetWorm ( 700000151 )
K7AntiVirusNetWorm ( 700000151 )
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:VB-AELN [Trj]
ClamAVWin.Malware.Aimmudci-9786421-0
KasperskyUDS:DangerousObject.Multi.Generic
AlibabaTrojanDownloader:Win32/Swity.aaaa232d
NANO-AntivirusTrojan.Win32.VB2.xcivz
AegisLabTrojan.Win32.Genome.4!c
TencentWin32.Trojan.Heur.Lmuo
Ad-AwareGen:Trojan.Heur.VP.dm0@a4araemi
SophosTroj/DwnLdr-KQX
ComodoTrojWare.Win32.VB.XXS@5gcz5n
F-SecureHeuristic.HEUR/AGEN.1117280
ZillyaTrojan.Genome.Win32.224526
TrendMicroTROJ_GEN.R002C0DLL20
McAfee-GW-EditionBehavesLike.Win32.Trojan.qm
EmsisoftGen:Trojan.Heur.VP.dm0@a4araemi (B)
IkarusTrojan.Win32.Genome
WebrootW32.Malware.Gen
AviraHEUR/AGEN.1117280
MAXmalware (ai score=98)
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojanDownloader:Win32/Swity.C
ArcabitTrojan.Heur.VP.EAE8F0
ZoneAlarmUDS:DangerousObject.Multi.Generic
GDataGen:Trojan.Heur.VP.dm0@a4araemi
CynetMalicious (score: 85)
McAfeeArtemis!A3BE0CFD4CC9
VBA32Trojan.Genome.ai
MalwarebytesGeneric.Malware/Suspicious
PandaGeneric Malware
ESET-NOD32a variant of Win32/VB.NTK
TrendMicro-HouseCallTROJ_GEN.R002C0DLL20
RisingTrojan.VB!8.B20 (CLOUD)
eGambitGeneric.Dropper
FortinetW32/VB.NTK!tr
BitDefenderThetaAI:Packer.81DD53811F
AVGWin32:VB-AELN [Trj]
Paloaltogeneric.ml

How to remove Win32:VB-AELN [Trj]?

Win32:VB-AELN [Trj] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment