Worm

Worm.Win32.Vobfus.ewvl information

Malware Removal

The Worm.Win32.Vobfus.ewvl is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Worm.Win32.Vobfus.ewvl virus can do?

  • Authenticode signature is invalid

How to determine Worm.Win32.Vobfus.ewvl?


File Info:

name: 1DF4506FD0A2A6959381.mlw
path: /opt/CAPEv2/storage/binaries/4d0b12c435f2f7d94c6747fcd6ebf9a3977e99eda928bd715656d9711d240c58
crc32: AF6C7719
md5: 1df4506fd0a2a6959381fea5bd16c611
sha1: 7fc5f46858a469c63b4ff73a4172c12479852370
sha256: 4d0b12c435f2f7d94c6747fcd6ebf9a3977e99eda928bd715656d9711d240c58
sha512: 341fc8a22595501d16864733dd7bbb5e150607272595d3d14256a57080d4c1e935cadf9aa8533c844770ae8b6037395952c31ccca99121aab2dd5751e4391b65
ssdeep: 768:3oZ+QyvpfBXvgOpU/WGGIegFDhNmvdMYXqYt1NEDIefZsD:3wkBXvgO2/rEgzNLoZt1y
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B7631E63B6B31C4BD5C27DBA2B879CE605B3A04D0F533652F2908B2DB628E2115D7E43
sha3_384: e51487137767abd253d06a7248a38f9abdca176c651e7ced5a260a57c147874c33d5e70c95d5011d90f2f4c3cf13f283
ep_bytes: 6808124000e8f0ffffff000000000000
timestamp: 2009-06-15 16:18:44

Version Info:

Translation: 0x0409 0x04b0

Worm.Win32.Vobfus.ewvl also known as:

BkavW32.AIDetectMalware
tehtrisGeneric.Malware
MicroWorld-eScanGen:Trojan.Chinky.2
CAT-QuickHealWorm.Autorun.NC3
SkyhighBehavesLike.Win32.VBObfus.km
McAfeeW32/VBNA.worm.gen.c
MalwarebytesGeneric.Malware.AI.DDS
VIPREGen:Trojan.Chinky.2
SangforSuspicious.Win32.Save.vb
K7AntiVirusNetWorm ( 700000151 )
K7GWNetWorm ( 700000151 )
CrowdStrikewin/malicious_confidence_100% (D)
BaiduWin32.Worm.AutoRun.aw
VirITTrojan.Win32.Small.TV
SymantecW32.Changeup
Elasticmalicious (high confidence)
ESET-NOD32Win32/AutoRun.VB.EW
APEXMalicious
TrendMicro-HouseCallWORM_AUTORUN.FHE
ClamAVWin.Trojan.Agent-35660
KasperskyWorm.Win32.Vobfus.ewvl
BitDefenderGen:Trojan.Chinky.2
NANO-AntivirusTrojan.Win32.Autoruner.covloz
SUPERAntiSpywareTrojan.Agent/Gen-NameThief[Smart]
AvastWin32:AutoRun-AYY [Wrm]
TencentWorm.Win32.Vb.wc
EmsisoftGen:Trojan.Chinky.2 (B)
F-SecureTrojan.TR/Dropper.Gen
DrWebWin32.HLLW.Autoruner.7155
TrendMicroWORM_AUTORUN.FHE
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.1df4506fd0a2a695
SophosW32/SillyFDC-DS
SentinelOneStatic AI – Malicious PE
MAXmalware (ai score=83)
GoogleDetected
AviraTR/Dropper.Gen
VaristW32/VB.W.gen!Eldorado
Antiy-AVLTrojan/Win32.VB
Kingsoftmalware.kb.a.1000
MicrosoftWorm:Win32/Autorun.NC
XcitiumTrojWare.Win32.TrojanDropper.Multi.TD4@1ej36z
ArcabitTrojan.Chinky.2
ZoneAlarmWorm.Win32.Vobfus.ewvl
GDataGen:Trojan.Chinky.2
CynetMalicious (score: 100)
AhnLab-V3Worm/Win32.Basun.R1388
Acronissuspicious
VBA32TScope.Trojan.VB
ALYacGen:Trojan.Chinky.2
TACHYONWorm/W32.Vobfus.69120
Cylanceunsafe
PandaAdware/AccesMembre
RisingWorm.Win32.VB.xi (CLASSIC)
YandexTrojan.GenAsa!0qTotRoDViQ
IkarusTrojan.VB.Inject
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/VBNA.G!tr
BitDefenderThetaAI:Packer.7435B9D21F
AVGWin32:AutoRun-AYY [Wrm]
DeepInstinctMALICIOUS
alibabacloudWorm:Win/Autorun.67654ff8

How to remove Worm.Win32.Vobfus.ewvl?

Worm.Win32.Vobfus.ewvl removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment