Trojan

How to remove “Trojan:Win32/Formbook.VD!MTB”?

Malware Removal

The Trojan:Win32/Formbook.VD!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Formbook.VD!MTB virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Exhibits possible ransomware file modification behavior
  • Creates a hidden or system file
  • Anomalous binary characteristics

How to determine Trojan:Win32/Formbook.VD!MTB?


File Info:

crc32: CCD13066
md5: aa8d0b33a1ec3702ba2e4d20923e405f
name: nw.exe
sha1: 5ae4244648bea023f608d9c0164d8a7f03d907e1
sha256: 566dfcc4ee6de9b9963de7d92276a5db51e6e40e4040ceb5fc25872673fec234
sha512: 55712e0b1a7a31b005220158e0bb2e4d33c774fcfb02e428bd0032b4742cd1c2327a4143930233fcd5fd32c2072a221a2d0c2ed5b2ddea3874247d861121ebc5
ssdeep: 24576:vyFa3MXDV0cc11BWwQb1ppGIPhECsoxvgiovPoPbg9ao4Tn03:vyFa3MOxybb1ppGIPhECsoxvgiovPoP
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan:Win32/Formbook.VD!MTB also known as:

BkavW32.AIDetectVM.malware2
DrWebTrojan.DownLoader33.57434
MicroWorld-eScanTrojan.GenericKD.43387250
FireEyeTrojan.GenericKD.43387250
McAfeeFareit-FVP!AA8D0B33A1EC
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.Win32.Agent.4!c
SangforMalware
K7AntiVirusTrojan-Downloader ( 005695f31 )
BitDefenderTrojan.GenericKD.43387250
K7GWTrojan-Downloader ( 005695f31 )
TrendMicroTrojan.MSIL.WACATAC.USXVPFP20
BitDefenderThetaGen:NN.ZelphiF.34130.mHW@ay5dLUgi
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
GDataTrojan.GenericKD.43387250
KasperskyHEUR:Trojan.Win32.Agent.gen
ViRobotTrojan.Win32.Z.Injector.1247232
RisingTrojan.Kryptik!1.C56D (CLASSIC)
Ad-AwareTrojan.GenericKD.43387250
SophosMal/Generic-S
ComodoMalware@#l990y3l2fsa8
F-SecureTrojan.TR/Injector.kdjji
EmsisoftTrojan.GenericKD.43387250 (B)
IkarusTrojan.Win32.Injector
AviraTR/Injector.kdjji
MAXmalware (ai score=99)
Antiy-AVLTrojan/Win32.Agent
ArcabitTrojan.Generic.D2960972
ZoneAlarmHEUR:Trojan.Win32.Agent.gen
MicrosoftTrojan:Win32/Formbook.VD!MTB
CynetMalicious (score: 85)
VBA32BScope.Backdoor.Remcos
ALYacTrojan.GenericKD.43387250
MalwarebytesTrojan.Injector
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Injector.EMML
TrendMicro-HouseCallTrojan.MSIL.WACATAC.USXVPFP20
SentinelOneDFI – Suspicious PE
FortinetW32/Injector.EKCN!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360Trojan.Generic

How to remove Trojan:Win32/Formbook.VD!MTB?

Trojan:Win32/Formbook.VD!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment