Worm

Worm:Win32/Boinberg!A removal tips

Malware Removal

The Worm:Win32/Boinberg!A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Worm:Win32/Boinberg!A virus can do?

  • Detects Sandboxie through the presence of a library
  • Network activity detected but not expressed in API logs
  • Collects information to fingerprint the system

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Worm:Win32/Boinberg!A?


File Info:

crc32: FDC573D7
md5: db4ed70bfc93bd38418c46b085ee61ba
name: DB4ED70BFC93BD38418C46B085EE61BA.mlw
sha1: 5669785a962ac33892c66958714e4f15d5b3bc6d
sha256: 30faff0d7ced9054bcf71b5a50894a7bf69ccd6c6aded218cc855f265c3f7566
sha512: b49eee98ce7ecd77aa576a3191b06c4b065dc9387b1e83c26382eefe0dcd13fd6482ff0cf9ed33bb4f8961ed72ba47bab8a5c77ef869fe55c1f87e967a62d507
ssdeep: 1536:2C/hBeqkZDCfrIJg/MDAADSqUpEBgb9hv30bi7Ce+MbEZ6/PGWV1sCAkcliNIvDd:b+pCfMs1uaSBgBhvkbACeFb9GK1sCAka
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Worm:Win32/Boinberg!A also known as:

BkavW32.AIDetect.malware1
K7AntiVirusP2PWorm ( 004cb6751 )
Elasticmalicious (high confidence)
DrWebBackDoor.IRC.Bot.1699
CynetMalicious (score: 100)
McAfeeBot-FGO!DB4ED70BFC93
CylanceUnsafe
ZillyaWorm.AutoRun.Win32.45329
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Blocker.ed0f1fe3
K7GWP2PWorm ( 004cb6751 )
Cybereasonmalicious.bfc93b
SymantecTrojan Horse
ESET-NOD32Win32/AutoRun.IRCBot.IC
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Worm.Boinberg-5
KasperskyTrojan-Ransom.Win32.Blocker.jene
BitDefenderGen:Trojan.ExplorerHijack.fqW@a0HwRFj
NANO-AntivirusTrojan.Win32.MLW.dniok
ViRobotTrojan.Win32.A.Scar.34304.K
SUPERAntiSpywareTrojan.Agent/Gen-Boinberg
MicroWorld-eScanGen:Trojan.ExplorerHijack.fqW@a0HwRFj
TencentMalware.Win32.Gencirc.10c170c2
Ad-AwareGen:Trojan.ExplorerHijack.fqW@a0HwRFj
SophosMal/Generic-S
ComodoMalware@#y9uiszuhegg2
BitDefenderThetaAI:Packer.60BC1F0D1E
VIPRETrojan.Win32.Generic!BT
TrendMicroMal_Otorun7
FireEyeGeneric.mg.db4ed70bfc93bd38
EmsisoftGen:Trojan.ExplorerHijack.fqW@a0HwRFj (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Generic.gjlg
WebrootW32.Rogue.Gen
AviraTR/ATRAPS.Gen
KingsoftWin32.Heur.KVMH017.a.(kcloud)
MicrosoftWorm:Win32/Boinberg.gen!A
AegisLabTrojan.Win32.Generic.4!c
GDataGen:Trojan.ExplorerHijack.fqW@a0HwRFj
TACHYONTrojan/W32.Hijack.93184.C
AhnLab-V3Worm/Win32.AutoRun.R28635
Acronissuspicious
VBA32Trojan.Scar
MAXmalware (ai score=100)
MalwarebytesMalware.AI.482501836
PandaTrj/Genetic.gen
RisingRansom.Blocker!8.12A (CLOUD)
YandexTrojan.GenAsa!BpXT1SqUbaE
IkarusWorm.Win32.Boinberg
FortinetW32/AutoRun.AAAD!tr
AVGWin32:Trojan-gen

How to remove Worm:Win32/Boinberg!A?

Worm:Win32/Boinberg!A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment