Worm

Worm.Win32.VBNA.brsj removal instruction

Malware Removal

The Worm.Win32.VBNA.brsj is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Worm.Win32.VBNA.brsj virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Behavioural detection: Injection (inter-process)
  • CAPE detected the embedded pe malware family
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Worm.Win32.VBNA.brsj?


File Info:

name: 7DEA0C0E6778015B1201.mlw
path: /opt/CAPEv2/storage/binaries/38a5fd21d9c7937b4bdfd090fbfcedcc0b3fbf0feda0cdfec68b22a42c659ba6
crc32: 5A8BD9A8
md5: 7dea0c0e6778015b120122d1131c9782
sha1: a0eb58c8592073c12a3ba4af2c11aed0bcd2e228
sha256: 38a5fd21d9c7937b4bdfd090fbfcedcc0b3fbf0feda0cdfec68b22a42c659ba6
sha512: 0cd1685dd9247ed662c2c8325f387ce8ab26e1e1b722e79bd2a050358a048ed0f43179845dc473e5263e3ed22f957cc2325ba02708ca2cb49564dc7e8f3d1730
ssdeep: 768:GOdEWgIDOJ9QX4W8v8NUIu0oWsV1qaZIp/Bj7YcRpaSOovHYxtxdvu:Rsk4HvzGs1stvHYxtH2
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1295375667DDB6485D608A3727B9ED2DA2A23674CBF83431674AD2FE86C14F049C1E133
sha3_384: c3ca294051f831e299cf58b6d8c25d5ad7db2c84f05c1effe502aa8ca24b465c31dff1233775160dd9fe229509e3fb41
ep_bytes: 685c124000e8eeffffff000000000000
timestamp: 2010-02-14 10:11:26

Version Info:

Translation: 0x0409 0x04b0
ProductName: sDcpfRUi
FileVersion: 5.75
ProductVersion: 5.75
InternalName: sDcpfRUi
OriginalFilename: sDcpfRUi.exe

Worm.Win32.VBNA.brsj also known as:

BkavW32.FamVT.VBNA.B.Worm
AVGWin32:AutoRun-BHP [Wrm]
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.Chinky.2
FireEyeGeneric.mg.7dea0c0e6778015b
CAT-QuickHealTrojan.Vobfus.gen
SkyhighBehavesLike.Win32.VBObfus.km
McAfeeVBObfus
MalwarebytesGeneric.Malware.AI.DDS
ZillyaWorm.VBNAGen.Win32.4
SangforSuspicious.Win32.Save.vb
K7GWTrojan ( f1000d031 )
K7AntiVirusTrojan ( f1000d031 )
BitDefenderThetaAI:Packer.C559230720
VirITWorm.Win32.VBNA.YXF
SymantecW32.Changeup
tehtrisGeneric.Malware
ESET-NOD32Win32/AutoRun.VB.LR
CynetMalicious (score: 100)
APEXMalicious
ClamAVHtml.Trojan.VBChinky-2
KasperskyWorm.Win32.VBNA.brsj
BitDefenderGen:Trojan.Chinky.2
NANO-AntivirusTrojan.Win32.VB.cojaqo
AvastWin32:AutoRun-BHP [Wrm]
TencentWorm.Win32.VBna.aab
TACHYONTrojan/W32.VB-Agent.64512.F
EmsisoftGen:Trojan.Chinky.2 (B)
BaiduWin32.Worm.Autorun.z
F-SecureWorm.WORM/Agent.ghj
DrWebWin32.HLLW.VBNA.based
VIPREGen:Trojan.Chinky.2
TrendMicroWORM_VBNA.SM
Trapminemalicious.moderate.ml.score
SophosMal/SillyFDC-C
IkarusWorm.Win32.VBNA
JiangminWorm/VBNA.hcvl
WebrootW32.Obfuscated.Gen
VaristW32/Vobfus.D.gen!Eldorado
AviraWORM/Agent.ghj
Antiy-AVLWorm/Win32.VBNA
Kingsoftmalware.kb.a.1000
MicrosoftWorm:Win32/Vobfus.AC
XcitiumWorm.Win32.Agent.ghj0@1pevv2
ArcabitTrojan.Chinky.2
ZoneAlarmWorm.Win32.VBNA.brsj
GDataGen:Trojan.Chinky.2
GoogleDetected
AhnLab-V3Win32/Vbna4.worm.Gen
Acronissuspicious
VBA32Trojan.VB.01073
ALYacGen:Trojan.Chinky.2
MAXmalware (ai score=80)
Cylanceunsafe
PandaW32/Vobfus.CP.worm
TrendMicro-HouseCallWORM_VBNA.SM
RisingTrojan.Autorun!1.DA78 (CLASSIC)
YandexTrojan.GenAsa!hG0y9LtVpvU
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/VBObfus.BDBD!tr
DeepInstinctMALICIOUS
alibabacloudTrojan.Win.UnkAgent

How to remove Worm.Win32.VBNA.brsj?

Worm.Win32.VBNA.brsj removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment