Categories: Virus

How to remove “Virus:Win32/VB.CC”?

The Virus:Win32/VB.CC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Virus:Win32/VB.CC virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Executes the printer spooler process
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Attempts to modify Explorer settings to prevent file extensions from being displayed
  • Attempts to modify Explorer settings to prevent hidden files from being displayed

How to determine Virus:Win32/VB.CC?


File Info:

name: 5675BFF15813AE2C80A0.mlwpath: /opt/CAPEv2/storage/binaries/a69745a28c5008b1b8c31a90b76b574ba472e6a011bda7be2fa774e0acbd27adcrc32: F15BFAC8md5: 5675bff15813ae2c80a0d40bd332e44bsha1: 3d1d134c3edbb62a205857c4a008cf34551154f7sha256: a69745a28c5008b1b8c31a90b76b574ba472e6a011bda7be2fa774e0acbd27adsha512: 097fabec5ff0f45f512db2a040d9a14ec707cfbf4a32813973eb78afc66d6902675a48d739d407223471202fbc933a713f91ddfef1aee7dcc2819e99269cb13bssdeep: 1536:Za3+ddygX7y9v7Z+NoykJHBOAFRfBjG3EdoIS:w8dfX7y9DZ+N7eB+hIStype: PE32 executable (GUI) Intel 80386, for MS Windowstlsh: T1ED834B1BB7CC5857EAA7273A65B785F89633785E6B438B476054333A1C32F022D27643sha3_384: 3fd935766cbd6ae6ebc6aac645553fdf8c60f95ed0c841f601fa76ce49a42c0aac5c4de71d17b10208087926ad305387ep_bytes: 6894314000e8eeffffff000000000000timestamp: 2003-08-06 18:34:23

Version Info:

CompanyName: Microsoft CorporationFileDescription: Microsoft Office WordFileVersion: 11.0.5604InternalName: WinWordLegalCopyright: Copyright © 1983-2003 Microsoft Corporation. All rights reserved.LegalTrademarks1: Microsoft® is a registered trademark of Microsoft Corporation.LegalTrademarks2: Windows® is a registered trademark of Microsoft Corporation.OriginalFilename: WinWord.exeProductName: Microsoft Office 2003ProductVersion: 11.0.5604Translation: 0x0000 0x04e4

Virus:Win32/VB.CC also known as:

Lionic Trojan.Win32.Swisyn.kZb9
tehtris Generic.Malware
DrWeb Win32.HLLW.Generic.194
MicroWorld-eScan Backdoor.Generic.523132
FireEye Generic.mg.5675bff15813ae2c
CAT-QuickHeal W32.Rungbu.A5
McAfee W32/Rungbu
Cylance Unsafe
VIPRE Backdoor.Generic.523132
Sangfor Suspicious.Win32.Save.vb
K7AntiVirus P2PWorm ( 004cb5d91 )
Alibaba Worm:Win32/vobfus.1030
K7GW P2PWorm ( 004cb5d91 )
Cybereason malicious.15813a
BitDefenderTheta AI:Packer.847AC4291C
VirIT Trojan.Win32.VB.DJD
Cyren W32/Rungbu.C.gen!Eldorado
Symantec W32.Rungbu
Elastic malicious (high confidence)
ESET-NOD32 Win32/VB.NHV
APEX Malicious
Paloalto generic.ml
ClamAV Win.Trojan.VBGeneric-6735873-0
Kaspersky Virus.Win32.VB.cc
BitDefender Backdoor.Generic.523132
NANO-Antivirus Virus.Win32.VB.fggxtd
SUPERAntiSpyware Worm.Agent/Gen-Silly
Avast Win32:VB-CVP
Tencent Virus.Win32.Vb.za
Ad-Aware Backdoor.Generic.523132
Sophos ML/PE-A + W32/VB-CTQ
Comodo Worm.Win32.VB.NHV@su5
Baidu Win32.Trojan.Begolu.a
Zillya Virus.VB.Win32.8
TrendMicro TROJ_VB.SMJ
McAfee-GW-Edition BehavesLike.Win32.PWSZbot.mm
Trapmine malicious.high.ml.score
Emsisoft Backdoor.Generic.523132 (B)
SentinelOne Static AI – Malicious PE
GData Win32.Virus.Rungflu.A
Jiangmin Virus.VB.da
Google Detected
Avira TR/Agent.VB.AF
MAX malware (ai score=80)
Antiy-AVL Trojan/Generic.ASBOL.766F
Arcabit Backdoor.Generic.D7FB7C
Microsoft Virus:Win32/VB.CC
Cynet Malicious (score: 100)
AhnLab-V3 Worm/Win32.VB.R2327
VBA32 Win32.VB
ALYac Backdoor.Generic.523132
TACHYON Backdoor/W32.VB-Agent.88064
Malwarebytes Malware.AI.1851529171
TrendMicro-HouseCall TROJ_VB.SMJ
Rising Trojan.VB.wvl (CLASSIC)
Yandex Trojan.GenAsa!udVToPk9Bo0
Ikarus Worm.Win32.VB
MaxSecure Virus.W32.VB.CC
Fortinet W32/VB.CC!worm
AVG Win32:VB-CVP
Panda W32/Rungbu.D.worm
CrowdStrike win/malicious_confidence_100% (W)

How to remove Virus:Win32/VB.CC?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Share
Published by
Paul Valéry

Recent Posts

Malware.AI.4243810870 removal tips

The Malware.AI.4243810870 is considered dangerous by lots of security experts. When this infection is active,…

1 min ago

Trojan:Win32/Trickbot.PF!MTB malicious file

The Trojan:Win32/Trickbot.PF!MTB is considered dangerous by lots of security experts. When this infection is active,…

2 mins ago

How to remove “Malware.AI.1899226952”?

The Malware.AI.1899226952 is considered dangerous by lots of security experts. When this infection is active,…

6 mins ago

Lazy.13485 information

The Lazy.13485 is considered dangerous by lots of security experts. When this infection is active,…

6 mins ago

Malware.AI.4200493585 information

The Malware.AI.4200493585 is considered dangerous by lots of security experts. When this infection is active,…

6 mins ago

How to remove “VirTool:Win32/Obfuscator.JM”?

The VirTool:Win32/Obfuscator.JM is considered dangerous by lots of security experts. When this infection is active,…

12 mins ago