Spy

About “Win32/Spy.VB.NUB” infection

Malware Removal

The Win32/Spy.VB.NUB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Spy.VB.NUB virus can do?

  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/Spy.VB.NUB?


File Info:

crc32: 5DBD96B3
md5: 95cdedf6433f10c1d15f9afd54afa548
name: 333.exe
sha1: 07775ef809a8db8d7f3386b7a40d783219223be2
sha256: b2b63cf30b73304dddc447bdba489476ae47e2845a01df74a485e8490c86cd6a
sha512: b102e990ef41c6bd61654e8c4e286112e9a7bce63036b7efaa34ca548f17799942ddac6f9e660aa2f29a7591c0858eb0ad2ae367d453e8f427775bbe779e9df8
ssdeep: 3072:PYlFSUYlFSUYlFSh/seXcn4zlaOJ9amhHxRoIRIpxXG:PY/SUY/SUY/ShBzl7LaZ
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2018
Assembly Version: 1.0.0.0
InternalName: 333.exe
FileVersion: 1.0.0.0
ProductName: 333
ProductVersion: 1.0.0.0
FileDescription: 333
OriginalFilename: 333.exe

Win32/Spy.VB.NUB also known as:

MicroWorld-eScanTrojan.GenericKD.30739931
CAT-QuickHealTrojan.Ditertag
McAfeeArtemis!95CDEDF6433F
CylanceUnsafe
ZillyaTrojan.Diztakun.Win32.3984
K7GWSpyware ( 00442b511 )
K7AntiVirusSpyware ( 00442b511 )
ArcabitTrojan.Generic.D1D50DDB
Invinceaheuristic
BaiduWin32.Trojan-Spy.VB.e
NANO-AntivirusTrojan.Win32.Diztakun.fbggko
SymantecTrojan.Gen.2
TrendMicro-HouseCallTROJ_GEN.R002C0WE818
AvastWin32:Malware-gen
GDataTrojan.GenericKD.30739931
KasperskyTrojan.Win32.Diztakun.asae
BitDefenderTrojan.GenericKD.30739931
AegisLabTroj.W32.Diztakun!c
RisingTrojan.Sysn!1.A23F (CLOUD)
Ad-AwareTrojan.GenericKD.30739931
EmsisoftTrojan.GenericKD.30739931 (B)
ComodoUnclassifiedMalware
F-SecureTrojan.GenericKD.30739931
DrWebTrojan.MulDrop6.62867
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0WE818
McAfee-GW-EditionArtemis!PUP
SophosKeylogger (PUA)
SentinelOnestatic engine – malicious
CyrenW32/Trojan.AZFK-7966
AviraTR/VB.Downloader.Gen
MAXmalware (ai score=99)
MicrosoftMonitoringTool:Win32/AnyKeylogger
Endgamemalicious (high confidence)
ZoneAlarmTrojan.Win32.Diztakun.asae
ALYacTrojan.GenericKD.30739931
AVwareTrojan.Win32.Generic!BT
VBA32Trojan.Diztakun
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Spy.VB.NUB
TencentWin32.Trojan.Diztakun.Huzl
YandexTrojan.Diztakun!
IkarusTrojan-Spy.Agent
FortinetMSIL/Kryptik.LOL!tr
AVGWin32:Malware-gen
Cybereasonmalicious.809a8d
Paloaltogeneric.ml
CrowdStrikemalicious_confidence_100% (D)
Qihoo-360Win32/Trojan.46b

How to remove Win32/Spy.VB.NUB?

Win32/Spy.VB.NUB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment