Malware

NewHeur_VB_Downloader.10 removal guide

Malware Removal

The NewHeur_VB_Downloader.10 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What NewHeur_VB_Downloader.10 virus can do?

  • Executable code extraction
  • The binary likely contains encrypted or compressed data.
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

www.jxngame.xyz

How to determine NewHeur_VB_Downloader.10?


File Info:

crc32: 56B40C2D
md5: 205ccefbe70dee9b84317cf17398edb1
name: 205CCEFBE70DEE9B84317CF17398EDB1.mlw
sha1: 4d617459cec3fbd61900b0a50b78bb60aadd3032
sha256: 0dfaf50f4995ef4b6c2ddb6143c167a09e8572b822187a519feee042b58e4fc8
sha512: 164cad4282f096cc8c866b971ddda4b7efa43c8d9cefebd427c82be2a8662210c4d2fff7def7cb5b1f165bf77c2696f8188e0f16af18e905a5c080ea6a66b1cb
ssdeep: 6144:p1bgawx1dEJbVDBdslOlS1PfCVuJFapew/bIvN7D46sNwCs:kxQJZBdsIl43uZpeSIvt46NC
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: ttttttttttttttttttotil
FileVersion: 1.03.0003
CompanyName: Steam
ProductName: Factorio
ProductVersion: 1.03.0003
OriginalFilename: ttttttttttttttttttotil.exe

NewHeur_VB_Downloader.10 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusRiskware ( 0040eff71 )
LionicTrojan.Win32.Blocker.j!c
ALYacGen:Variant.Ransom.440
CylanceUnsafe
ZillyaTrojan.Blocker.Win32.36090
SangforSuspicious.Win32.Save.a
AlibabaRansom:Win32/Blocker.6a1cb427
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.be70de
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of NewHeur_VB_Downloader.10
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Blocker.jqhl
BitDefenderGen:Variant.Ransom.440
NANO-AntivirusTrojan.Win32.Blocker.eigjcf
MicroWorld-eScanGen:Variant.Ransom.440
TencentWin32.Trojan.Blocker.Hnuy
Ad-AwareGen:Variant.Ransom.440
SophosMal/Generic-S
BitDefenderThetaAI:Packer.B7119B7A21
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Fareit.hh
FireEyeGeneric.mg.205ccefbe70dee9b
EmsisoftGen:Variant.Ransom.440 (B)
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_87%
Antiy-AVLTrojan/Generic.ASMalwS.1C67811
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Dynamer!rfn
ArcabitTrojan.Ransom.440
GDataGen:Variant.Ransom.440
McAfeeArtemis!205CCEFBE70D
MAXmalware (ai score=88)
VBA32TrojanRansom.Blocker
PandaTrj/GdSda.A
YandexTrojan.Blocker!4CYOH2gyqPk
IkarusTrojan.SuspectCRC
FortinetW32/Blocker.JQHL!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove NewHeur_VB_Downloader.10?

NewHeur_VB_Downloader.10 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment