Malware

Win32:VB-AEOJ [Trj] information

Malware Removal

The Win32:VB-AEOJ [Trj] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32:VB-AEOJ [Trj] virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Behavioural detection: Injection (inter-process)
  • Attempts to disable Windows Auto Updates
  • Anomalous binary characteristics
  • Attempts to modify Explorer settings to prevent hidden files from being displayed

How to determine Win32:VB-AEOJ [Trj]?


File Info:

name: A9A3945EBBE5271D138C.mlw
path: /opt/CAPEv2/storage/binaries/67075ea2d2284ff5b228fbc47dd32bb33daa6059f1bb17eedc617c4cbfaadd20
crc32: B90BC2DA
md5: a9a3945ebbe5271d138c34fe068f42e0
sha1: 8c5df4731c651d3b31a3e2c63123a32b7d374a52
sha256: 67075ea2d2284ff5b228fbc47dd32bb33daa6059f1bb17eedc617c4cbfaadd20
sha512: 82747b6f2dc3627443c7f631ff58959636d1c79418ecd9d10bc34fde0cf596cb66153bd76ef6bf86b7b840238e0f261476fb3c4f10ad8d56a959b3879e4e1b57
ssdeep: 1536:PlSSOiuZTeh6hC8bwT+lyHcw1vjzVj+xakAyBGIs7oJd:dlulehGwT+lyHB5XN+x9s7
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T120A3097F7A889856CA28673426B2C7E611A37C494F0B464B69047BAB1CB7F104D3DF87
sha3_384: 4a5ea7637de0b3caecb2fc3a4eb42dbc3dfc1c0a965bba3e60d0d768357a5df5d8c057a8f639ddd3be0c15cc78e9f3fc
ep_bytes: 6884134000e8eeffffff000000000000
timestamp: 2012-09-27 05:35:11

Version Info:

Translation: 0x0409 0x04b0
ProductName: circondero
FileVersion: 7.65
ProductVersion: 7.65
InternalName: impalpably
OriginalFilename: impalpably.exe

Win32:VB-AEOJ [Trj] also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.a9a3945ebbe5271d
CAT-QuickHealWorm.VobfusMF.S28717827
SkyhighBehavesLike.Win32.VBObfus.cm
ALYacGen:Variant.Barys.950
Cylanceunsafe
SangforSuspicious.Win32.Save.vb
K7AntiVirusEmailWorm ( 0054d10f1 )
AlibabaWorm:Win32/Vobfus.cf644878
K7GWEmailWorm ( 0054d10f1 )
ArcabitTrojan.Barys.950
BitDefenderThetaGen:NN.ZevbaF.36804.gm0@aSUrXEni
VirITTrojan.Win32.X-Cryptor.GB
SymantecW32.Changeup!gen20
ESET-NOD32a variant of Win32/VBObfus.CG
APEXMalicious
AvastWin32:VB-AEOJ [Trj]
ClamAVWin.Trojan.Vobfus-63
KasperskyWorm.Win32.Vobfus.aijh
BitDefenderGen:Variant.Barys.950
NANO-AntivirusTrojan.Win32.Vobfus.covkwg
MicroWorld-eScanGen:Variant.Barys.950
TencentWorm.Win32.Vobfus.q
EmsisoftGen:Variant.Barys.950 (B)
BaiduWin32.Worm.Pronny.da
F-SecureTrojan.TR/Downloader.Gen8
DrWebWin32.HLLW.Autoruner1.26769
ZillyaWorm.Vobfus.Win32.1524930
TrendMicroWORM_VOBFUS.SM00
Trapminemalicious.high.ml.score
SophosMal/SillyFDC-Y
JiangminTrojan/Vbobf.b
WebrootW32.Worm.Sm00
GoogleDetected
AviraTR/Downloader.Gen8
MAXmalware (ai score=81)
Antiy-AVLWorm/Win32.WBNA.gen
KingsoftWin32.HeurC.KVM007.a
XcitiumWorm.Win32.Pronny.ABQ@4puwz1
MicrosoftWorm:Win32/Vobfus.IM
ZoneAlarmWorm.Win32.Vobfus.aijh
GDataGen:Variant.Barys.950
VaristW32/VB.HE.gen!Eldorado
AhnLab-V3Worm/Win32.Vobfus.R38898
Acronissuspicious
McAfeeGenDownloader.rv
TACHYONWorm/W32.Vobfus.106496
VBA32Worm.Vobfus
MalwarebytesVBObfus.Worm.Spreader.DDS
PandaW32/Vobfus.GEW.worm
TrendMicro-HouseCallWORM_VOBFUS.SM00
RisingWorm.Vobfus!8.10E (TFE:3:mUyggN2JCFL)
YandexTrojan.GenAsa!A8EjGzqI3C8
IkarusWorm.Win32.Vobfus
MaxSecureTrojan.Malware.12189036.susgen
FortinetW32/Injector.ADYA!tr
AVGWin32:VB-AEOJ [Trj]
DeepInstinctMALICIOUS
alibabacloudWorm:Win/Vobfus.f782dd06

How to remove Win32:VB-AEOJ [Trj]?

Win32:VB-AEOJ [Trj] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment