Worm

Worm:Win32/Vobfus!Y removal instruction

Malware Removal

The Worm:Win32/Vobfus!Y is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Worm:Win32/Vobfus!Y virus can do?

  • Network activity detected but not expressed in API logs

How to determine Worm:Win32/Vobfus!Y?


File Info:

crc32: 52815545
md5: 31c517df47d1ca6dfd13585ce63b734d
name: 31C517DF47D1CA6DFD13585CE63B734D.mlw
sha1: 03deff231b94352c539c1c1bbb6cb0a768774179
sha256: ddfc9d2c20b5f693089a94e78691a93a436c73f6f781853579e9af0e69787611
sha512: eb8dd62dd5b53167a9b8ef5c12ffa68b85f790b9f71f6d7919647a2331d5d56de05a831618f0d32996831249d0926f22d36a9ca3e148cab997d8e99f1e1e9429
ssdeep: 1536:vfbdiIiqE6eXTzQ+64OM2OMATZgJ6rMhe6rWhA3KaHmKq30ZIi6XI:LdS6eXo+TrMhe6rM3NX
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
ProductVersion: 8.43
InternalName: Sternalis
FileVersion: 8.43
OriginalFilename: Sternalis.exe
ProductName: winterish

Worm:Win32/Vobfus!Y also known as:

Elasticmalicious (high confidence)
DrWebTrojan.Siggen4.22263
MicroWorld-eScanTrojan.Generic.20458211
FireEyeGeneric.mg.31c517df47d1ca6d
ALYacTrojan.Generic.20458211
CylanceUnsafe
ZillyaWorm.Vobfus.Win32.224814
SangforMalware
K7AntiVirusP2PWorm ( 003e57271 )
BitDefenderTrojan.Generic.20458211
K7GWP2PWorm ( 003e57271 )
Cybereasonmalicious.f47d1c
CyrenW32/VB.HE.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:VB-AEOG [Trj]
ClamAVWin.Trojan.VB-1718
KasperskyHEUR:Trojan.Win32.Generic
RisingWorm.VobfusEx!1.99DD (CLOUD)
Ad-AwareTrojan.Generic.20458211
EmsisoftTrojan.Generic.20458211 (B)
ComodoWorm.Win32.Pronny.ABQ@4puwz1
F-SecureTrojan.TR/Dropper.VB.Gen
BaiduWin32.Worm.Pronny.es
VIPRETrojan.Win32.Generic.pak!cobra
McAfee-GW-EditionBehavesLike.Win32.Adware.cz
SophosMal/Generic-S
IkarusWorm.Win32.Vobfus
AviraTR/Dropper.VB.Gen
MicrosoftWorm:Win32/Vobfus.gen!Y
ArcabitTrojan.Generic.D1382AE3
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.Generic.20458211
CynetMalicious (score: 100)
Acronissuspicious
McAfeeGenDownloader.rv
MAXmalware (ai score=84)
MalwarebytesMalware.AI.2379666581
PandaTrj/CI.A
ESET-NOD32a variant of Win32/VBObfus.CG
TencentWin32.Worm.Vobfusex.Ljub
YandexTrojan.GenAsa!OYYZJ1QTWE0
SentinelOneStatic AI – Malicious PE – Worm
eGambitUnsafe.AI_Score_91%
FortinetW32/Generic.CG!tr
AVGWin32:VB-AEOG [Trj]
CrowdStrikewin/malicious_confidence_60% (D)
Qihoo-360Malware.Radar01.Gen

How to remove Worm:Win32/Vobfus!Y?

Worm:Win32/Vobfus!Y removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment