Trojan

Trojan.Dropper.VB.AQZ removal

Malware Removal

The Trojan.Dropper.VB.AQZ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Dropper.VB.AQZ virus can do?

  • Executable code extraction
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.Dropper.VB.AQZ?


File Info:

crc32: 54408807
md5: 64fbc6a24db7cdb3c5cfbc987d4aa0b8
name: 64FBC6A24DB7CDB3C5CFBC987D4AA0B8.mlw
sha1: 280e7a2ddc1bad5e5e8fe7913c6a5d67eb4e6fba
sha256: 2701f8cdf0d20b27afbd3864a62f566216cf723f26afe3ee6000180899ae9e8c
sha512: 9f75627b5832dc749c0dfba960742a581a552210b9e6925d0679d5c85395016d26f2ae0fca49aa81d43c9864ac1016c7e3428e5cc104b1666b9fcba279938200
ssdeep: 384:NrA6hT9sdh2E6ozD2G+R003Dnz85LjN7QJlxD94bsEe+R003DJdh2E6ozD2ghT9:NrAayzpA003DY5NsJLybsEeA003DJzZ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0804 0x04b0
InternalName: 3
FileVersion: 1.00
CompanyName: aaaa
ProductName: x4e0bx8f7dx8005
ProductVersion: 1.00
OriginalFilename: 3.exe

Trojan.Dropper.VB.AQZ also known as:

K7AntiVirusTrojan ( 005091001 )
LionicTrojan.Win32.Generic.4!c
CynetMalicious (score: 100)
ALYacTrojan.Dropper.VB.AQZ
CylanceUnsafe
SangforTrojan.Win32.NewHeur_VB_Downloader.3
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaDownloader:Application/NewHeur.74840f52
K7GWTrojan ( 005091001 )
Cybereasonmalicious.24db7c
CyrenW32/VB-Downloader-Minimi-based!
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of NewHeur_VB_Downloader.14
APEXMalicious
AvastWin32:Malware-gen
BitDefenderTrojan.Dropper.VB.AQZ
NANO-AntivirusTrojan.Win32.VB.fgqchg
MicroWorld-eScanTrojan.Dropper.VB.AQZ
TencentWin32.Trojan.Vb.Wqxf
Ad-AwareTrojan.Dropper.VB.AQZ
SophosMal/Generic-S
ComodoTrojWare.Win32.TrojanDropper.VB.AQZ2@1ulf2b
BitDefenderThetaGen:NN.ZevbaF.34266.cm0@aSjK@Fib
VIPRETrojan-Downloader.Win32.VB.Minimi!cobra (v)
TrendMicroTROJ_GEN.R002C0GJU21
McAfee-GW-EditionBehavesLike.Win32.Trojan.nt
FireEyeGeneric.mg.64fbc6a24db7cdb3
EmsisoftTrojan.Dropper.VB.AQZ (B)
SentinelOneStatic AI – Suspicious PE
AviraTR/VB.Downloader.Gen
eGambitUnsafe.AI_Score_99%
KingsoftWin32.Heur.KVM006.a.(kcloud)
MicrosoftTrojan:Win32/Occamy.C27
ArcabitTrojan.Dropper.VB.AQZ
SUPERAntiSpywareTrojan.Agent/Gen-Vbaj
GDataTrojan.Dropper.VB.AQZ
McAfeeArtemis!64FBC6A24DB7
MAXmalware (ai score=100)
VBA32BScope.TrojanPSW.Kukudva
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0GJU21
YandexTrojan.VB!aPZr5fWNsak
IkarusTrojan-Dropper.Vb
FortinetW32/Malware_fam.NB
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan.Dropper.VB.AQZ?

Trojan.Dropper.VB.AQZ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment