Worm

Worm.VBS.Dinihou removal tips

Malware Removal

The Worm.VBS.Dinihou is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Worm.VBS.Dinihou virus can do?

  • Detected script timer window indicative of sleep style evasion
  • Reads data out of its own binary image
  • A scripting utility was executed
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Worm.VBS.Dinihou?


File Info:

crc32: D71042BD
md5: 0541da662416047f089bde99d0a851f6
name: 0541DA662416047F089BDE99D0A851F6.mlw
sha1: abb9541e16c794252a1eeaa0da9226a4264c5b26
sha256: a7447c486ca72ae894758d9dc60dbd82005626e85630525eb7b3c6880009dcaa
sha512: f3c03825ed4bd01d8a3d3c68e9c79ef42e121549de51a82acff036a3b6ee141b689d6f10116c296030a4c254cccc7efba9daea8e45cde79d04a4886e81de219e
ssdeep: 1536:V7f65g9OX2CLGAApICdOk/dYLAZXdlItBGTjeIOlnToIfO4OF:BnlVICUkLrGGTINTBfOR
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Worm.VBS.Dinihou also known as:

BkavW32.AIDetect.malware2
K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
ClamAVWin.Worm.Sagent-6972912-1
CAT-QuickHealTrojan.TiggrePMF.S2150710
CylanceUnsafe
ZillyaTrojan.Agent.Win32.880519
SangforTrojan.Win32.Save.a
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.e16c79
CyrenW32/Agentwdcr.ACEU-7177
SymantecML.Attribute.HighConfidence
AvastFileRepMalware
CynetMalicious (score: 100)
NANO-AntivirusTrojan.Win32.Ursu.exfdyc
TencentMalware.Win32.Gencirc.10cf0427
SophosGeneric ML PUA (PUA)
McAfee-GW-EditionBehavesLike.Win32.Generic.mh
FireEyeGeneric.mg.0541da662416047f
EmsisoftTrojan.Agent (A)
SentinelOneStatic AI – Malicious PE
JiangminTrojanDownloader.Script.gjh
Antiy-AVLTrojan/Generic.ASMalwS.2453A43
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GridinsoftTrojan.Win32.Agent.vb!s1
TACHYONTrojan/W32.Agent.88064.ACM
McAfeeArtemis!0541DA662416
VBA32Worm.VBS.Dinihou
MalwarebytesExploit.CVE20170213.VB
RisingTrojan.Generic@ML.100 (RDML:FWlv+hboCl0EpccJ60M5GQ)
YandexTrojan.GenAsa!qbutAVrvChM
IkarusBackdoor.MSIL.Bladabindi
MaxSecureTrojan.Malware.11973.susgen
AVGFileRepMalware

How to remove Worm.VBS.Dinihou?

Worm.VBS.Dinihou removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment