Trojan

Trojan:Win32/Nabucur removal guide

Malware Removal

The Trojan:Win32/Nabucur is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Nabucur virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan:Win32/Nabucur?


File Info:

crc32: 103B29CE
md5: 3155267ffb43fd9b22b6b385500866a0
name: 3155267FFB43FD9B22B6B385500866A0.mlw
sha1: ddba72ea9d219beaf9f042587cf0fcdfa3332d1a
sha256: 2e42ab0d4bc6918a300426a263e128a77308ed4e3e5371e2625993729925b20a
sha512: 4577f1e3efedfb2751a40b4fe40d3e3068d6b137a03161a3f82bb3be11b5a8e3e38b181de7d671a9a6f9864783b84415f936ad54476eff3caef0887611294e88
ssdeep: 1536:pSIz6JxYv7dSA4S3cUAwxpfUp8LX6liZConxfOwPs:pSI2vYvknS33UeSi0onxGwPs
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright X'moe (C) 2017
InternalName: Loader.exe
FileVersion: 1.0.0.1
CompanyName: X'moe
ProductName: SiglusEngine Loader
ProductVersion: 1.0.0.1
FileDescription: Universal patch for SiglusEngine
OriginalFilename: Loader.exe
Translation: 0x0409 0x04b0

Trojan:Win32/Nabucur also known as:

BkavW32.AIDetect.malware2
K7AntiVirusUnwanted-Program ( 0055361f1 )
CAT-QuickHealTrojan.Mauvaise.SL1
ALYacGen:Variant.Razy.567535
CylanceUnsafe
SangforTrojan.Win32.Nabucur.mt
AlibabaTrojan:Win32/Nabucur.44445230
K7GWAdware ( 005693e61 )
Cybereasonmalicious.ffb43f
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GameHack.DKC potentially unsafe
APEXMalicious
AvastFileRepMalware
BitDefenderGen:Variant.Razy.567535
NANO-AntivirusTrojan.Win32.Hype.eyotib
SUPERAntiSpywareTrojan.Agent/Gen-HeurHype
MicroWorld-eScanGen:Variant.Razy.567535
Ad-AwareGen:Variant.Razy.567535
SophosGeneric PUA NN (PUA)
ComodoMalware@#widy1pvhkfg5
BitDefenderThetaAI:Packer.9802838621
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.dz
FireEyeGeneric.mg.3155267ffb43fd9b
EmsisoftGen:Variant.Razy.567535 (B)
JiangminTrojan.Generic.gtvxh
WebrootW32.Malware.Gen
Antiy-AVLTrojan/Generic.ASMalwS.26C73DA
KingsoftWin32.Heur.KVMH008.a.(kcloud)
MicrosoftTrojan:Win32/Nabucur
GridinsoftTrojan.Win32.Agent.dg
ArcabitTrojan.Razy.D8A8EF
AegisLabTrojan.Win32.Generic.4!c
GDataGen:Variant.Razy.567535
McAfeeGenericRXEU-OP!3155267FFB43
MAXmalware (ai score=97)
VBA32BScope.Trojan.Inject
MalwarebytesMalware.AI.1935351482
PandaTrj/GdSda.A
RisingTrojan.Generic@ML.82 (RDML:6KaxOD8TpKzs23u/GcufOQ)
YandexTrojan.GenAsa!F0r6tr+C5JY
IkarusTrojan.SuspectCRC
MaxSecureTrojan.Malware.7164915.susgen
FortinetW32/GenericRXEU.OP!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Trojan:Win32/Nabucur?

Trojan:Win32/Nabucur removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment