Malware

Win32.Resur.B (B) removal instruction

Malware Removal

The Win32.Resur.B (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32.Resur.B (B) virus can do?

  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Win32.Resur.B (B)?


File Info:

name: 43C6FBA906CFBEE97D74.mlw
path: /opt/CAPEv2/storage/binaries/a9a55e6dfca78e359657086c6ea72f83fb823dde7c39b3df4a670052a048277d
crc32: 5A37055B
md5: 43c6fba906cfbee97d749b167f464ae5
sha1: e684e263db134fb75d33ac16b3fe6f544bbf6da9
sha256: a9a55e6dfca78e359657086c6ea72f83fb823dde7c39b3df4a670052a048277d
sha512: b4ffb238e66d78386b67d3945ad8a5fed926a2227585df955c951be5cd63daf38026f36e7f93fdaf02ecad3a42a7131a1c33c655fff8ec6f99057015b732645f
ssdeep: 768:6wv4s7UUpOvj8u4Mf4MMRt4MtsqzSbozJeg5TDtgCRk+r/R+ooqUxH:6wvvoqO4uP87nt5ntxk+4oo9
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T165434B0FBAC64422C585847541E64A564A3EFC211FF9EDC37B982E4F1E712E1993B38B
sha3_384: 021d364f911540726f2b7f3f4494ebb243ce4181282516877ccb1acfcd5d217703a888ecb7666421aded01ba15654f16
ep_bytes: 558bec6aff6800d14000687499400064
timestamp: 2014-12-03 14:24:43

Version Info:

0: [No Data]

Win32.Resur.B (B) also known as:

BkavW32.FamVT.RelocationResur.PE
Elasticmalicious (high confidence)
MicroWorld-eScanWin32.Resur.B
FireEyeGeneric.mg.43c6fba906cfbee9
CAT-QuickHealW32.Resur
McAfeeW32/Resur.b
MalwarebytesMalware.AI.2415964734
Sangfor[ARMADILLO V1.71]
K7AntiVirusVirus ( 0040f51e1 )
K7GWVirus ( 0040f51e1 )
BaiduWin32.Virus.Resur.a
CyrenW32/Resurrect.B
SymantecW32.Resure.38400
tehtrisGeneric.Malware
ESET-NOD32Win32/Resur.B
APEXMalicious
ClamAVWin.Virus.Resur-7001272-0
KasperskyVirus.Win32.Resur.e
BitDefenderWin32.Resur.B
NANO-AntivirusVirus.Win32.Resur.ccfj
AvastWin32:Resurrection
TencentVirus.Win32.Resur.gef
Ad-AwareWin32.Resur.B
EmsisoftWin32.Resur.B (B)
ComodoVirus.Win32.Resur.a@4xmlyr
DrWebWin32.Senna.5
ZillyaVirus.Resur.Win32.1
TrendMicroPE_RESUR.B
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.qt
SophosML/PE-A + W32/SennaSpy
IkarusVirus.Win32.Resur
GDataWin32.Resur.B
JiangminWin32/Resur.b
AviraW32/Resur.b
MicrosoftVirus:Win32/Resur.A!epo
CynetMalicious (score: 100)
AhnLab-V3Win32/Resur.X983
BitDefenderThetaAI:FileInfector.9694FB900D
ALYacWin32.Resur.B
MAXmalware (ai score=81)
VBA32Virus.Win32.Resur.f
CylanceUnsafe
TrendMicro-HouseCallPE_RESUR.B
RisingVirus.Resur!1.D2CF (CLASSIC)
YandexWin32.Resur.F
FortinetW32/Resurrect.B
AVGWin32:Resurrection
Cybereasonmalicious.906cfb
PandaW32/Resur.B

How to remove Win32.Resur.B (B)?

Win32.Resur.B (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment