Worm

Worm.VobfusMF.S23950353 removal

Malware Removal

The Worm.VobfusMF.S23950353 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Worm.VobfusMF.S23950353 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Worm.VobfusMF.S23950353?


File Info:

name: 3DF38E2E9669B4F8B9FE.mlw
path: /opt/CAPEv2/storage/binaries/5c84ff00cac4a6b30148ceeb562a818c3982999f9b13e6b963431f4fbe41094c
crc32: 08167073
md5: 3df38e2e9669b4f8b9fe7faf64993a8b
sha1: e665b6d4d24f7efac9a2a125eec16528aa1dfea8
sha256: 5c84ff00cac4a6b30148ceeb562a818c3982999f9b13e6b963431f4fbe41094c
sha512: eacdbffc50f6581f962e81d444f639b247c9231cf763b9c6381d803bed96b2e85d8d72c67e16bc571683185009bba646052848a9280db95ce52328a60134005b
ssdeep: 1536:Eol0ccuBnotOB+dGrNjjmJ2NuKuFr1M5Br2QbCcIzQih:YuBotOB++jOKbGZ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18DA3409F7FF52244F9590638ADF386FF19D2A98C6A1B4142673036641BEFE021C24A5F
sha3_384: 92f51339faad9cc08ef0b8098f5f8d9736cf2e6ab66f3b2e11a3a1e38a01cb7f3a034039794b6540e2641495a99c2530
ep_bytes: 6894124000e8f0ffffff000048000000
timestamp: 2004-03-09 19:19:11

Version Info:

Translation: 0x0409 0x04b0
ProductName: VfJvjN
FileVersion: 1.00
ProductVersion: 1.00
InternalName: kapnfA
OriginalFilename: kapnfA.exe

Worm.VobfusMF.S23950353 also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Barys.950
FireEyeGeneric.mg.3df38e2e9669b4f8
CAT-QuickHealWorm.VobfusMF.S23950353
SkyhighBehavesLike.Win32.VBObfus.cm
McAfeeW32/Autorun.worm.aaeh
Cylanceunsafe
VIPRETrojan.GenericKDZ.82864
SangforSuspicious.Win32.Save.vb
K7AntiVirusEmailWorm ( 0054d10f1 )
AlibabaWorm:Win32/Jorik.75108c6a
K7GWEmailWorm ( 0054d10f1 )
Cybereasonmalicious.4d24f7
ArcabitTrojan.Barys.950
BitDefenderThetaGen:NN.ZevbaF.36744.gm1@aW9rlbbi
VirITTrojan.Win32.Generic.CKVZ
SymantecW32.Changeup
ESET-NOD32Win32/AutoRun.VB.AVO
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Trojan.Changeup-6169544-0
KasperskyTrojan.Win32.Jorik.Vobfus.ahog
BitDefenderGen:Variant.Barys.950
NANO-AntivirusTrojan.Win32.Jorik.cihugs
SUPERAntiSpywareTrojan.Agent/Gen-Autorun
AvastWin32:Vitro [Inf]
TencentTrojan.Win32.Jorik.pa
TACHYONTrojan/W32.VB-Jorik.104026
EmsisoftGen:Variant.Barys.950 (B)
BaiduWin32.Worm.VB.nn
F-SecureTrojan.TR/Jorik.Vobfus.ahog
DrWebWin32.HLLW.Autoruner1.14788
ZillyaTrojan.Jorik.Win32.582967
TrendMicroWORM_VOBFUS.SMPS
Trapminemalicious.high.ml.score
SophosW32/Vobfus-AH
IkarusTrojan.Patched
VaristW32/Vobfus.AJ.gen!Eldorado
AviraTR/Jorik.Vobfus.ahog
Antiy-AVLWorm/Win32.WBNA.gen
Kingsoftmalware.kb.a.1000
XcitiumWorm.Win32.VB.AUA@4o7zkg
MicrosoftWorm:Win32/Vobfus.EH
ViRobotWorm.Win32.A.VBNA.102400.AZ
ZoneAlarmTrojan.Win32.Jorik.Vobfus.ahog
GDataWin32.Trojan.PSE1.8A9OXW
GoogleDetected
AhnLab-V3Trojan/Win32.Vobfus.R150635
Acronissuspicious
ALYacTrojan.GenericKDZ.82864
MAXmalware (ai score=82)
VBA32Trojan.Jorik
MalwarebytesGeneric.Malware.AI.DDS
PandaW32/Vobfus.GEW.worm
TrendMicro-HouseCallWORM_VOBFUS.SMPS
RisingWorm.VobfusEx!1.99DC (CLASSIC)
YandexTrojan.GenAsa!n9vpFGRhqIs
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/VBObfus.AU!tr
AVGWin32:Vitro [Inf]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Worm.VobfusMF.S23950353?

Worm.VobfusMF.S23950353 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment