Threat Database Viruses Virus.Vbcrypt.ET

Virus.Vbcrypt.ET

By CagedTech in Viruses

Threat Scorecard

Popularity Rank: 23,373
Threat Level: 80 % (High)
Infected Computers: 257
First Seen: May 1, 2013
Last Seen: March 20, 2026
OS(es) Affected: Windows

Aliases

15 security vendors flagged this file as malicious.

Antivirus Vendor Detection
Fortinet Adware/SoftonicDownloader
McAfee-GW-Edition Heuristic.BehavesLike.Win32.ModifiedUPX.C!86
F-Prot W32/Backdoor2.HKKY
K7AntiVirus Backdoor
McAfee Artemis!7DF2794FA7D5
AVG Dropper.Generic8.ONC
Fortinet MSIL/Small.CC!tr.dldr
AVG CoinMiner.DC
Fortinet MSIL/CoinMiner.AB
Ikarus Win32.SuspectCrc
AntiVir TR/Kazy.158415.60
Kaspersky Trojan-Downloader.Win32.Agent.gzil
eSafe Win32.Trojan
Symantec WS.Reputation.1
McAfee Artemis!EA9D3FCCEED6

SpyHunter Detects & Remove Virus.Vbcrypt.ET

File System Details

Virus.Vbcrypt.ET may create the following file(s):
# File Name MD5 Detections
1. uPlus.exe de23a37fc7eab7f0f2a64c19c7b23d53 37
2. ltc.exe ea9d3fcceed64fc0d8b87d39d49071b4 4
3. gwbims.exe 0c7b0dd9976d199f62e4c9b697e9d288 2
4. HD codec.exe aff7e1b081fe9d4ab1399595a9a518cc 1

Analysis Report

General information

Family Name: Trojan.Kryptik.SA
Signature status: No Signature

Known Samples

MD5: 4c4420e01f6302ff92413a5395261481
SHA1: e65b33aebcd65ab6ca0e3d50dc88e272e8fff0db
SHA256: 8B2975751FD09DC9D0F9ADAD738BDAD5728A28C01038947344D411E58E2F0F56
File Size: 853.99 KB, 853986 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File doesn't have security information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
Show More
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Company Name Hanbitsoft corp.
File Description Tantra Client
File Version 6, 9, 0, 6
Internal Name HTLaunch
Legal Copyright Copyright (c) - 2003 Hanbitsoft corp.
Original Filename HTLaunch.exe
Product Name Tantra Client
Product Version 1, 0, 0, 1

File Traits

  • big overlay
  • x86

Block Information

Total Blocks: 153
Potentially Malicious Blocks: 24
Whitelisted Blocks: 129
Unknown Blocks: 0

Visual Map

0 x 0 0 x x x x 0 0 x x x x 0 x x x x x 0 0 x x x x x x x x x 1 1 x 0 0 0 0 1 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1 0 0 0 0 0 0 1 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Trending

Most Viewed

Loading...