Worm

Should I remove “Worm.Win32.Vobfus.efkd”?

Malware Removal

The Worm.Win32.Vobfus.efkd is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Worm.Win32.Vobfus.efkd virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Worm.Win32.Vobfus.efkd?


File Info:

name: D1EE3241F01BCC26471B.mlw
path: /opt/CAPEv2/storage/binaries/56ad46bedbf41b71e05bea90e6e91edd2583823920b8f6872b7628512e9e0a64
crc32: 9085B08B
md5: d1ee3241f01bcc26471b570c992f73f0
sha1: a00f04e171d9e93dbf1f53dde92727129a5e19e7
sha256: 56ad46bedbf41b71e05bea90e6e91edd2583823920b8f6872b7628512e9e0a64
sha512: 23eaedcf821e632813e81d1db99198ad813801ef3b439157b81f323a9ccf119bef23b55a877e690f5b052fefdf3cb52f2b44c938223a23103a8141020088c237
ssdeep: 6144:WA4K16oTJWvfU4+bOl8femcK/fObT/bGimszUf7WqnF:FAoTMvs4+bOlNK/fObT/bGipE7RF
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1ED14B91ABA19B06BE553D9F0192893A6383E6D7A13A0FC0773817F1462B01D7B9B171F
sha3_384: a58b87c75d209c474eda60de9c2209a11fdffb32d1c5002219a3ff65312cc234560a6885e3b3357b0178218aa1d3e3e9
ep_bytes: 6864394000e8f0ffffff000000000000
timestamp: 2011-12-08 06:54:25

Version Info:

Translation: 0x0409 0x04b0
ProductName: LzUpRE
FileVersion: 1.00
ProductVersion: 1.00
InternalName: YWpKapjL
OriginalFilename: YWpKapjL.exe

Worm.Win32.Vobfus.efkd also known as:

BkavW32.AIDetectMalware
LionicWorm.Win32.WBNA.lIOe
AVGWin32:VB-AAFJ [Trj]
Elasticmalicious (high confidence)
DrWebWin32.HLLW.Autoruner2.17906
MicroWorld-eScanGen:Variant.Chinky.7
FireEyeGeneric.mg.d1ee3241f01bcc26
SkyhighBehavesLike.Win32.VBObfus.cm
McAfeeVBObfus.ci
MalwarebytesGeneric.Malware.AI.DDS
ZillyaWorm.Vobfus.Win32.1440089
SangforSuspicious.Win32.Save.vb
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaWorm:Win32/Vobfus.28b0439f
K7GWEmailWorm ( 0054d10f1 )
K7AntiVirusEmailWorm ( 0054d10f1 )
BitDefenderThetaGen:NN.ZevbaF.36802.mm0@aSyL7Zii
VirITTrojan.Win32.Vobfus.KEK
SymantecW32.Changeup
tehtrisGeneric.Malware
ESET-NOD32Win32/AutoRun.VB.AQE
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Trojan.Vobfus-15
KasperskyWorm.Win32.Vobfus.efkd
BitDefenderGen:Variant.Chinky.7
NANO-AntivirusTrojan.Win32.Vobfus.cqkyep
AvastWin32:VB-AAFJ [Trj]
TencentWorm.Win32.Vobfus.n
TACHYONWorm/W32.Vobfus.200704
EmsisoftGen:Variant.Chinky.7 (B)
F-SecureWorm.WORM/Vobfus.axqm
BaiduWin32.Worm.Autorun.l
VIPREGen:Variant.Chinky.7
TrendMicroWORM_SILLY.SMOY
SophosW32/Vobfus-CI
IkarusTrojan.Win32.Diple
JiangminTrojan/VBKrypt.hmnj
GoogleDetected
AviraWORM/Vobfus.axqm
Antiy-AVLWorm/Win32.WBNA.gen
KingsoftWin32.HeurC.KVM007.a
MicrosoftWorm:Win32/Vobfus.gen!O
XcitiumTrojWare.Win32.Diple.EMIB@4pez3w
ArcabitTrojan.Chinky.7
ViRobotTrojan.Win32.Agent.200704.AW
ZoneAlarmWorm.Win32.Vobfus.efkd
GDataGen:Variant.Chinky.7
VaristW32/VBInject.BG.gen!Eldorado
AhnLab-V3Trojan/Win32.Jorik.R17307
Acronissuspicious
ALYacGen:Variant.Chinky.7
MAXmalware (ai score=100)
VBA32BScope.Trojan.Diple
Cylanceunsafe
PandaW32/Vobfus.GEW.worm
TrendMicro-HouseCallWORM_SILLY.SMOY
RisingWorm.AutoRun!1.E3C6 (CLASSIC)
YandexTrojan.GenAsa!slw+RD9t9OE
SentinelOneStatic AI – Malicious PE
FortinetW32/Diple.EJQE!tr
Cybereasonmalicious.1f01bc
DeepInstinctMALICIOUS
alibabacloudWorm:Win/Vobfus.efkd

How to remove Worm.Win32.Vobfus.efkd?

Worm.Win32.Vobfus.efkd removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment