Worm

Worm.Win32.Qvod.qp removal guide

Malware Removal

The Worm.Win32.Qvod.qp is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Worm.Win32.Qvod.qp virus can do?

  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Worm.Win32.Qvod.qp?


File Info:

name: 33C9C9CA33D6A0642D45.mlw
path: /opt/CAPEv2/storage/binaries/5bec56e0012aff314948b4a07178958b94632c08f92c1e2b0eda546bcac424b9
crc32: 5311A908
md5: 33c9c9ca33d6a0642d45bcb7ec0f7305
sha1: e210fe6bbfb2c182798c92586304e8b9885509c1
sha256: 5bec56e0012aff314948b4a07178958b94632c08f92c1e2b0eda546bcac424b9
sha512: 03456373a5849c7fb2da3cdda7eeb024b3553ee1bf5a6722de8e5074ae4d1b5207f84e97315e2958f9fb03eaf9f9bdea636ad1fd56f47d1698e64e259a65b349
ssdeep: 1536:Av8jkIB0yIB3J5G275WIjUzgYeBmdDe7+oaI5zjpaEK759+wTEO8fppoVxg:A8V0yIB5w2d7IGBmdDQ+rI5zlalX+wxy
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11A93F1E515848DBEDA024770D0361E12A2655F2C9AB8DD6C084A7FBEBFBF3C608D9453
sha3_384: d10b8501b6f603fb279c777ae0a6b401551578994f4f8a03fa67564fb01b3e5c4529de388b5dfd9cf5c270a91e1d1743
ep_bytes: b800304200681fe0400064ff35000000
timestamp: 2010-06-09 14:46:32

Version Info:

CompanyName: Shenzhen QVOD Technology Co.,Ltd
FileDescription: QvodInstall Module
FileVersion: 3, 0, 0, 0
InternalName: QvodInstall.exe
LegalCopyright: Copyright(C) 2006-2009 QVOD
OriginalFilename: QvodInstall.exe
ProductName: QvodInstall Module
ProductVersion: 3, 0, 0, 0
Translation: 0x0409 0x04b0

Worm.Win32.Qvod.qp also known as:

BkavW32.AIDetect.malware2
LionicVirus.Win32.Qvod.leHz
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Win32.QVod.A
CAT-QuickHealExploit.ShellCode.Gen
ALYacGen:Win32.QVod.A
CylanceUnsafe
K7AntiVirusTrojan ( 0055e40b1 )
AlibabaWorm:Win32/ShellCode.9f932dfc
K7GWTrojan ( 0055e40b1 )
CrowdStrikewin/malicious_confidence_100% (W)
BaiduWin32.Trojan.Qvod.a
CyrenW32/Pikorms.A.gen!Eldorado
SymantecW32.Wapomi.B
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Wapomi.K
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.Qvod-310
KasperskyWorm.Win32.Qvod.qp
BitDefenderGen:Win32.QVod.A
NANO-AntivirusTrojan.Win32.Agent.zmsgv
SUPERAntiSpywareTrojan.Agent/Gen-Dropper
AvastWin32:Malware-gen
TencentTrojan.TenThief.DNFTrojan.dju
Ad-AwareGen:Win32.QVod.A
EmsisoftGen:Win32.QVod.A (B)
ComodoBackdoor.Win32.Qvod.~IC@1vk6eh
DrWebTrojan.Hostar.4
ZillyaWorm.Qvod.Win32.246
TrendMicroPE_PIKORAV.SM-O
McAfee-GW-EditionBehavesLike.Win32.Ransomware.mc
FireEyeGeneric.mg.33c9c9ca33d6a064
SophosML/PE-A + Mal/Emogen-Y
SentinelOneStatic AI – Malicious PE
GDataGen:Win32.QVod.A
JiangminWorm/Generic.na
WebrootW32.Malware.Gen
AviraW32/Viking.atdc.103
MAXmalware (ai score=100)
KingsoftWorm.Qvod.qp.(kcloud)
ZoneAlarmWorm.Win32.Qvod.pjv
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Qvod.R2044
McAfeeArtemis!33C9C9CA33D6
VBA32Rootkit.Agent
MalwarebytesNimnul.Virus.FileInfector.DDS
ZonerProbably Heur.ExeHeaderP
TrendMicro-HouseCallPE_PIKORAV.SM-O
RisingWorm.Qvod!1.9926 (CLOUD)
IkarusVirus.Win32.Wapomi
MaxSecureTrojan.Malware.9597162.susgen
FortinetW32/Generic.AC.7131B!tr
BitDefenderThetaGen:NN.ZexaF.34606.fqueaeRtknmb
AVGWin32:Malware-gen
Cybereasonmalicious.a33d6a
PandaTrj/Genetic.gen

How to remove Worm.Win32.Qvod.qp?

Worm.Win32.Qvod.qp removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment