Virus

How to remove “Virus:Win32/VB.CC”?

Malware Removal

The Virus:Win32/VB.CC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Virus:Win32/VB.CC virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Executes the printer spooler process
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Attempts to modify Explorer settings to prevent file extensions from being displayed
  • Attempts to modify Explorer settings to prevent hidden files from being displayed

How to determine Virus:Win32/VB.CC?


File Info:

name: 5675BFF15813AE2C80A0.mlw
path: /opt/CAPEv2/storage/binaries/a69745a28c5008b1b8c31a90b76b574ba472e6a011bda7be2fa774e0acbd27ad
crc32: F15BFAC8
md5: 5675bff15813ae2c80a0d40bd332e44b
sha1: 3d1d134c3edbb62a205857c4a008cf34551154f7
sha256: a69745a28c5008b1b8c31a90b76b574ba472e6a011bda7be2fa774e0acbd27ad
sha512: 097fabec5ff0f45f512db2a040d9a14ec707cfbf4a32813973eb78afc66d6902675a48d739d407223471202fbc933a713f91ddfef1aee7dcc2819e99269cb13b
ssdeep: 1536:Za3+ddygX7y9v7Z+NoykJHBOAFRfBjG3EdoIS:w8dfX7y9DZ+N7eB+hIS
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1ED834B1BB7CC5857EAA7273A65B785F89633785E6B438B476054333A1C32F022D27643
sha3_384: 3fd935766cbd6ae6ebc6aac645553fdf8c60f95ed0c841f601fa76ce49a42c0aac5c4de71d17b10208087926ad305387
ep_bytes: 6894314000e8eeffffff000000000000
timestamp: 2003-08-06 18:34:23

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Microsoft Office Word
FileVersion: 11.0.5604
InternalName: WinWord
LegalCopyright: Copyright © 1983-2003 Microsoft Corporation. All rights reserved.
LegalTrademarks1: Microsoft® is a registered trademark of Microsoft Corporation.
LegalTrademarks2: Windows® is a registered trademark of Microsoft Corporation.
OriginalFilename: WinWord.exe
ProductName: Microsoft Office 2003
ProductVersion: 11.0.5604
Translation: 0x0000 0x04e4

Virus:Win32/VB.CC also known as:

LionicTrojan.Win32.Swisyn.kZb9
tehtrisGeneric.Malware
DrWebWin32.HLLW.Generic.194
MicroWorld-eScanBackdoor.Generic.523132
FireEyeGeneric.mg.5675bff15813ae2c
CAT-QuickHealW32.Rungbu.A5
McAfeeW32/Rungbu
CylanceUnsafe
VIPREBackdoor.Generic.523132
SangforSuspicious.Win32.Save.vb
K7AntiVirusP2PWorm ( 004cb5d91 )
AlibabaWorm:Win32/vobfus.1030
K7GWP2PWorm ( 004cb5d91 )
Cybereasonmalicious.15813a
BitDefenderThetaAI:Packer.847AC4291C
VirITTrojan.Win32.VB.DJD
CyrenW32/Rungbu.C.gen!Eldorado
SymantecW32.Rungbu
Elasticmalicious (high confidence)
ESET-NOD32Win32/VB.NHV
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.VBGeneric-6735873-0
KasperskyVirus.Win32.VB.cc
BitDefenderBackdoor.Generic.523132
NANO-AntivirusVirus.Win32.VB.fggxtd
SUPERAntiSpywareWorm.Agent/Gen-Silly
AvastWin32:VB-CVP
TencentVirus.Win32.Vb.za
Ad-AwareBackdoor.Generic.523132
SophosML/PE-A + W32/VB-CTQ
ComodoWorm.Win32.VB.NHV@su5
BaiduWin32.Trojan.Begolu.a
ZillyaVirus.VB.Win32.8
TrendMicroTROJ_VB.SMJ
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.mm
Trapminemalicious.high.ml.score
EmsisoftBackdoor.Generic.523132 (B)
SentinelOneStatic AI – Malicious PE
GDataWin32.Virus.Rungflu.A
JiangminVirus.VB.da
GoogleDetected
AviraTR/Agent.VB.AF
MAXmalware (ai score=80)
Antiy-AVLTrojan/Generic.ASBOL.766F
ArcabitBackdoor.Generic.D7FB7C
MicrosoftVirus:Win32/VB.CC
CynetMalicious (score: 100)
AhnLab-V3Worm/Win32.VB.R2327
VBA32Win32.VB
ALYacBackdoor.Generic.523132
TACHYONBackdoor/W32.VB-Agent.88064
MalwarebytesMalware.AI.1851529171
TrendMicro-HouseCallTROJ_VB.SMJ
RisingTrojan.VB.wvl (CLASSIC)
YandexTrojan.GenAsa!udVToPk9Bo0
IkarusWorm.Win32.VB
MaxSecureVirus.W32.VB.CC
FortinetW32/VB.CC!worm
AVGWin32:VB-CVP
PandaW32/Rungbu.D.worm
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Virus:Win32/VB.CC?

Virus:Win32/VB.CC removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment