Malware

What is “Win32:VB-ZZI [Trj]”?

Malware Removal

The Win32:VB-ZZI [Trj] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32:VB-ZZI [Trj] virus can do?

  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Win32:VB-ZZI [Trj]?


File Info:

name: 92D49C5FAEA018581310.mlw
path: /opt/CAPEv2/storage/binaries/267a69f9826740246cd5ef1b931c6619000ccd4e053c12bdb4e3d7a25484d923
crc32: B9E1ED40
md5: 92d49c5faea018581310b8fadcfccc14
sha1: c64ebd5a9fdb52e3272d0d22f2ae4a1fe45b6be2
sha256: 267a69f9826740246cd5ef1b931c6619000ccd4e053c12bdb4e3d7a25484d923
sha512: 99b23640dbda7b05af855c5ccc6d68c2aa20b1457bd6e6096b974897511c49674c4acb84ca2387957a6d7ac7d77b0d071a353901d529f80b03356210e429d5a3
ssdeep: 192:Z1JdFHkexDMNN+2LLtKslwI/+Je1IAnyiBqmFq0MbB9vQi82gtBJwTh6DWwjO8Ec:xdFEqk+A/uF000M1JUtBW6K3+E+4Htc
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12CB2D513BF7198F2C409E776E6E58B7C2643A4A547454B07690C2F6CAD323817EB3A8D
sha3_384: 6e5ffbd75b8baaad77416cc3df475558bab3839b4530de201d7b36332f6b0a5f522311774e0567c653ecfafc0de562f6
ep_bytes: 68243b4000e8eeffffff000000000000
timestamp: 2011-11-30 00:00:33

Version Info:

0: [No Data]

Win32:VB-ZZI [Trj] also known as:

BkavW32.AIDetect.malware2
DrWebTrojan.VbCrypt.81
FireEyeGeneric.mg.92d49c5faea01858
McAfeeArtemis!92D49C5FAEA0
CrowdStrikewin/malicious_confidence_90% (W)
SymantecSMG.Heur!gen
KasperskyTrojan.Win32.Diple.dmof
VIPRELooksLike.Win32.Malware!vb (v)
McAfee-GW-EditionBehavesLike.Win32.Generic.mt
SophosGeneric ML PUA (PUA)
JiangminTrojan.Diple.amoh
AviraWORM/Vobfus.eujsz
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
APEXMalicious
RisingWorm.VobfusEx!1.99E8 (CLASSIC)
YandexTrojan.VBGent.Gen.835
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.W32.Diple.dmof
AVGWin32:VB-ZZI [Trj]
Cybereasonmalicious.a9fdb5
AvastWin32:VB-ZZI [Trj]

How to remove Win32:VB-ZZI [Trj]?

Win32:VB-ZZI [Trj] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment