Worm

Worm:Win32/Vobfus.MB removal

Malware Removal

The Worm:Win32/Vobfus.MB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Worm:Win32/Vobfus.MB virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Worm:Win32/Vobfus.MB?


File Info:

name: F14E3EB12909362B0887.mlw
path: /opt/CAPEv2/storage/binaries/98071ca5d62ef5aec5c3b09f87d2e62c3b1895dfa49042ea7ae57a4f71f6cd65
crc32: 43494F38
md5: f14e3eb12909362b0887892dd6f28a7f
sha1: 5dbb3460d86a62861c51097658419bcc7d646dbd
sha256: 98071ca5d62ef5aec5c3b09f87d2e62c3b1895dfa49042ea7ae57a4f71f6cd65
sha512: 131367e933b5aeaee9204358a0a63ba05904d148e69f531809b67f21604d9b75eb6bdb207e104277c4055013d5f72dfd1063287d501905e32a56b6c210e877f9
ssdeep: 1536:OHDam3zfDju3iRtylnyaPSHJic7AqVJVhEGTLDARcfSxam9bHsAcNFvbFw9FCiof:uaeTDju3atyQj026GTLURiSEh3ki
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T137E3A37F7BA061D4E61625302AF6D3F2055BBC2C5B07804B2624B36A28F6F115E6EF17
sha3_384: 26bd46c477ad473b798cc404acbf45cfeb20a47292a1c6ac9b799938b30604b1e779e079e11a09829bb00ad993dc59ca
ep_bytes: 689c124000e8f0ffffff000000000000
timestamp: 2012-11-26 19:19:16

Version Info:

CompanyName: Camass
ProductName: sporalood
FileVersion: 5.53
ProductVersion: 5.53
InternalName: saffisso
OriginalFilename: saffisso.exe

Worm:Win32/Vobfus.MB also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Agent.Y!c
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.VB.Agent.OL
ClamAVWin.Trojan.Changeup-5
FireEyeGeneric.mg.f14e3eb12909362b
CAT-QuickHealTrojan.Beebone.D
McAfeeW32/Autorun.worm.qr
MalwarebytesGeneric.Malware.AI.DDS
SangforSuspicious.Win32.Save.vb
K7AntiVirusEmailWorm ( 0054d10f1 )
AlibabaWorm:Win32/Vobfus.053b3230
K7GWEmailWorm ( 0054d10f1 )
Cybereasonmalicious.129093
VirITTrojan.Win32.VBCrypt.FBN
CyrenW32/VB.HC.gen!Eldorado
SymantecW32.Changeup
Elasticmalicious (high confidence)
ESET-NOD32Win32/Pronny.IJ
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan.Win32.Agent.uxpi
BitDefenderTrojan.VB.Agent.OL
NANO-AntivirusTrojan.Win32.Agent.covkam
SUPERAntiSpywareTrojan.Agent/Gen-Vobfus
AvastWin32:VB-AFEI [Trj]
TencentMalware.Win32.Gencirc.10b66e75
TACHYONTrojan/W32.Agent.155648
EmsisoftTrojan.VB.Agent.OL (B)
F-SecureWorm.WORM/Vobfus.psb
DrWebTrojan.DownLoader7.31207
VIPRETrojan.VB.Agent.OL
TrendMicroWORM_VOBFUS.SMRR
McAfee-GW-EditionBehavesLike.Win32.VBObfus.cm
Trapminemalicious.high.ml.score
SophosMal/Autorun-AX
IkarusWin32.Outbreak
GDataWin32.Worm.Vobfus.K8SDVQ
JiangminTrojan/Agent.hcaz
AviraWORM/Vobfus.psb
Antiy-AVLWorm/Win32.WBNA.gen
XcitiumTrojWare.Win32.Pronny.IJ@4s7ryl
ArcabitTrojan.VB.Agent.OL
ZoneAlarmTrojan.Win32.Agent.uxpi
MicrosoftWorm:Win32/Vobfus.MB
GoogleDetected
AhnLab-V3Worm/Win32.VBNA.R44312
BitDefenderThetaGen:NN.ZevbaF.36250.jm0@aGQ@3Jbi
ALYacTrojan.VB.Agent.OL
MAXmalware (ai score=80)
VBA32Trojan.Agent
Cylanceunsafe
PandaW32/Vobfus.gen.worm
TrendMicro-HouseCallWORM_VOBFUS.SMRR
RisingWorm.Pronny!8.2E9 (TFE:3:xC5A3w3HPWD)
YandexTrojan.GenAsa!SC9vfg0EbGo
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/WBNA.IPA!worm
AVGWin32:VB-AFEI [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Worm:Win32/Vobfus.MB?

Worm:Win32/Vobfus.MB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment