Trojan

TrojanDownloader:Win32/Beebone.CY removal instruction

Malware Removal

The TrojanDownloader:Win32/Beebone.CY is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:Win32/Beebone.CY virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Performs HTTP requests potentially not found in PCAP.
  • Authenticode signature is invalid
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

How to determine TrojanDownloader:Win32/Beebone.CY?


File Info:

name: 006F3C09E66B67082729.mlw
path: /opt/CAPEv2/storage/binaries/ed351ed31abd90081ca2f19641bf62f439d6320567476150b9d70d9426f74afc
crc32: 8343B8EA
md5: 006f3c09e66b670827291dc1b99b711b
sha1: 060a1f02e77d5603240261ac7267b805a5688bea
sha256: ed351ed31abd90081ca2f19641bf62f439d6320567476150b9d70d9426f74afc
sha512: 60f9efe9b329e930eb43efbebad41f2b9b62c89b5903ba42caf3a8f9b253a40565ac34f4fcfcd401c49f26f701476b9f26eb8eb1487df6eb65729f835f25f267
ssdeep: 1536:Ndti+fOv7XJjYdE4tfyVXn6XEK4rB0dT:ftiCOIZk36XV4N4
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T121A32A277AE0C976D819CAF82D2B4758446FBC700964DD43F7D06E5D3EF2E02AA26253
sha3_384: 74d62ff3a79bb40ef31c06c9b99f7083c9e9f10a779a80f089fc91ab0fe3f796e7e4a38af6673ab3339043740eee539a
ep_bytes: 68a0224000e8eeffffff000060000000
timestamp: 2012-08-11 20:23:13

Version Info:

Translation: 0x0409 0x04b0
Comments: respirative gossip norleucine
CompanyName: respirative gossip norleucine
FileDescription: respirative gossip norleucine
LegalCopyright: respirative gossip norleucine
LegalTrademarks: respirative gossip norleucine
ProductName: respirative gossip norleucine
FileVersion: 7.38
ProductVersion: 7.38
InternalName: rehollow
OriginalFilename: rehollow.exe

TrojanDownloader:Win32/Beebone.CY also known as:

BkavW32.AIDetectMalware
AVGWin32:VBCrypt-BJA [Trj]
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader6.42768
MicroWorld-eScanGen:Variant.Bulz.750310
FireEyeGeneric.mg.006f3c09e66b6708
CAT-QuickHealTrojan.Beebone.D
SkyhighVBObfus.ek
McAfeeVBObfus.ek
MalwarebytesGeneric.Malware.AI.DDS
ZillyaWorm.WBNA.Win32.1902317
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 003d2c8b1 )
AlibabaWorm:Win32/BEEBONE.06aa0173
K7GWTrojan ( 003d2c8b1 )
BitDefenderThetaGen:NN.ZevbaF.36804.gm0@amsWEyei
VirITTrojan.Win32.VB.CHSK
SymantecTrojan.Gen.MBT
ESET-NOD32Win32/VB.QPF
CynetMalicious (score: 99)
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.VB-1653
KasperskyWorm.Win32.WBNA.akqf
BitDefenderGen:Variant.Bulz.750310
NANO-AntivirusTrojan.Win32.Dwn.cihugr
SUPERAntiSpywareTrojan.Agent/Gen-Dropper
AvastWin32:VBCrypt-BJA [Trj]
TencentMalware.Win32.Gencirc.10b3b026
EmsisoftGen:Variant.Bulz.750310 (B)
F-SecureTrojan.TR/Dldr.Beebone.8774
BaiduWin32.Trojan.VBObfus.f
VIPREGen:Variant.Bulz.750310
TrendMicroTROJ_BEEBONE.SMF
SophosMal/SillyFDC-W
IkarusTrojan.VB
JiangminTrojan/VBKrypt.hbsh
WebrootW32.Obfuscated.Gen
VaristW32/Downloader.DW.gen!Eldorado
AviraTR/Dldr.Beebone.8774
Antiy-AVLWorm/Win32.WBNA.gen
KingsoftWin32.Worm.WBNA.akqf
MicrosoftTrojanDownloader:Win32/Beebone.CY
XcitiumTrojWare.Win32.VB.QPF@4q6gsm
ArcabitTrojan.Bulz.DB72E6
ViRobotTrojan.Win32.A.VBKrypt.106496.AMV
ZoneAlarmWorm.Win32.WBNA.akqf
GDataGen:Variant.Bulz.750310
GoogleDetected
AhnLab-V3Trojan/Win32.VBKrypt.R33593
VBA32TScope.Trojan.VB
ALYacGen:Variant.Bulz.750310
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_BEEBONE.SMF
RisingTrojan.VBEx!1.99F5 (CLASSIC)
YandexTrojan.GenAsa!1/ejNCWBAgY
MAXmalware (ai score=100)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/VBKrypt.C!tr
DeepInstinctMALICIOUS
alibabacloudWorm:Win/WBNA.akqf

How to remove TrojanDownloader:Win32/Beebone.CY?

TrojanDownloader:Win32/Beebone.CY removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment