Trojan

About “Trojan-Dropper.Win32.VB.blie” infection

Malware Removal

The Trojan-Dropper.Win32.VB.blie is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Dropper.Win32.VB.blie virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Trojan-Dropper.Win32.VB.blie?


File Info:

name: E1D0EC38E8A1A6A3EC24.mlw
path: /opt/CAPEv2/storage/binaries/60759f2edd3cab3d0746a9f4956ee4f1c5060bc472fe5d88246376f019a73e05
crc32: 53F9A7BE
md5: e1d0ec38e8a1a6a3ec242cf195324f21
sha1: 35dd8497f7a3bb3c8087519af5c1730539c6b7f8
sha256: 60759f2edd3cab3d0746a9f4956ee4f1c5060bc472fe5d88246376f019a73e05
sha512: de9bcdd86e8eb077873f44843a7fe3b6568a1083f6daae09f839e942a0e6687936cfef6d9550fc03670e12f11626543fb4fd3db7892329d39a944ae657aba0cc
ssdeep: 1536:n2yzF9MFVCujlsQoeQZZ86ukpj0nGGF9v+4DRI:2yzQVCujl71QZZ4kp4F9XtI
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C0B32813BE51442FD565C9F09CB996B9BA61AE391BF1AE4723C0BB46387060379F120F
sha3_384: 52ea2c9b18e0f11d5d1708860a08c26340f3a9a7778d493f44e356d458aba9d0dc01d50ad620f0d8c73b628493ebc244
ep_bytes: 68782d4000e8eeffffff000048000000
timestamp: 2012-06-19 19:24:01

Version Info:

Translation: 0x0409 0x04b0
ProductName: Main
FileVersion: 1.00
ProductVersion: 1.00
InternalName: Main
OriginalFilename: Main.exe

Trojan-Dropper.Win32.VB.blie also known as:

BkavW32.FamVT.RenamerV.Trojan
LionicTrojan.Win32.VB.to6k
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.64991980
ClamAVWin.Malware.Swisyn-9942393-0
FireEyeTrojan.GenericKD.64991980
CAT-QuickHealTrojan.Msposer.A3
McAfeeGeneric VB.kr
Cylanceunsafe
ZillyaDropper.VB.Win32.49357
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 003b42321 )
AlibabaTrojan:Win32/Msposer.1366
K7GWP2PWorm ( 003b42321 )
Cybereasonmalicious.7f7a3b
VirITTrojan.Win32.Generic.ACKE
CyrenW32/Sisron.H.gen!Eldorado
SymantecSMG.Heur!gen
tehtrisGeneric.Malware
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-Dropper.Win32.VB.blie
BitDefenderTrojan.GenericKD.64991980
AvastWin32:VB-OJQ [Wrm]
TencentTrojan.Win32.Swisyn.wa
TACHYONTrojan/W32.VB-Swisyn.112388
EmsisoftTrojan.GenericKD.64991980 (B)
BaiduWin32.Trojan.VB.gp
DrWebTrojan.VbCrypt.250
VIPRETrojan.GenericKD.64991980
TrendMicroTROJ_AGENT_046861.TOMB
McAfee-GW-EditionBehavesLike.Win32.VBObfus.cm
SophosTroj/VB-GJY
SentinelOneStatic AI – Malicious PE
GDataWin32.Trojan-Downloader.Agent.BID
JiangminTrojanDropper.VB.avfm
Antiy-AVLTrojan[Dropper]/Win32.VB
XcitiumTrojWare.Win32.VB.qo@4pu4ed
ArcabitTrojan.Generic.D3DFB2EC
ZoneAlarmTrojan-Dropper.Win32.VB.blie
MicrosoftTrojan:Win32/Msposer.I
GoogleDetected
AhnLab-V3Trojan/Win32.Pincav.C12642
ALYacTrojan.GenericKD.64991980
MAXmalware (ai score=86)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_AGENT_046861.TOMB
RisingTrojan.VB!1.6519 (CLASSIC)
IkarusTrojan.Win32.VB
FortinetW32/Agent.DHCR!tr
AVGWin32:VB-OJQ [Wrm]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan-Dropper.Win32.VB.blie?

Trojan-Dropper.Win32.VB.blie removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment