Trojan

About “Win32/TrojanDownloader.VB.NZX” infection

Malware Removal

The Win32/TrojanDownloader.VB.NZX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/TrojanDownloader.VB.NZX virus can do?

  • Authenticode signature is invalid

How to determine Win32/TrojanDownloader.VB.NZX?


File Info:

name: F96B0C5D7AC41D50D18E.mlw
path: /opt/CAPEv2/storage/binaries/3b30903ad2d3aa742365a16857b800d159af029990a38040d6dd0c65f7d5c161
crc32: 859A8CD9
md5: f96b0c5d7ac41d50d18e3094aee44dd7
sha1: 0e1036429e2074628f9c59e0c28ff872a4722488
sha256: 3b30903ad2d3aa742365a16857b800d159af029990a38040d6dd0c65f7d5c161
sha512: 2b48041b028800be2cd0345a0065a4097658127d4cc6c8a1999235762714953b28d15e7350b6ecf110f4aba81ccc3f689dba61b078684f8077771c82643f16b5
ssdeep: 768:wccliTduoAl+qOQSgFrhKo//WomvdfQXwYt1IEDIefZsK:/cIxTAcqOK3qowgnt1d
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1EE632E63B6B35C4AD5C27EBA2B839CE60537A04D0F533661F2508B2DB639E60149BF53
sha3_384: 98faf805b0faf59918e98194316d709cc2f61adca0762e6e046729f1bbcce10b69eb1a12740c2b1b44957b6de36ce3a8
ep_bytes: 68f4114000e8eeffffff000000000000
timestamp: 2009-06-17 14:24:34

Version Info:

Translation: 0x0409 0x04b0

Win32/TrojanDownloader.VB.NZX also known as:

BkavW32.AIDetectMalware
LionicWorm.Win32.Basun.lwAE
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.Chinky.2
FireEyeGeneric.mg.f96b0c5d7ac41d50
CAT-QuickHealWorm.Datunif.A
SkyhighBehavesLike.Win32.VBObfus.km
McAfeeW32/VBNA.worm.gen.c
Cylanceunsafe
ZillyaWorm.Basun.Win32.18780
SangforSuspicious.Win32.Save.vb
K7AntiVirusEmailWorm ( 000dc83c1 )
AlibabaTrojan:Win32/Starter.ali2000005
K7GWEmailWorm ( 000dc83c1 )
Cybereasonmalicious.29e207
BitDefenderThetaAI:Packer.DD73FADD1F
VirITTrojan.Win32.VB.KF
SymantecW32.Changeup
tehtrisGeneric.Malware
ESET-NOD32Win32/TrojanDownloader.VB.NZX
APEXMalicious
ClamAVWin.Trojan.VB-1042
KasperskyWorm.Win32.Basun.ajp
BitDefenderGen:Trojan.Chinky.2
NANO-AntivirusTrojan.Win32.Basun.bakqn
SUPERAntiSpywareTrojan.Agent/Gen-NameThief[Smart]
AvastWin32:AutoRun-AYY [Wrm]
TencentWorm.Win32.Basun.a
TACHYONTrojan/W32.VB-Agent.69632.AQ
SophosW32/Datunif-A
BaiduWin32.Trojan.VB.q
F-SecureTrojan.TR/Dropper.Gen
DrWebWin32.HLLW.Autoruner2.24570
VIPREGen:Trojan.Chinky.2
TrendMicroWORM_VB.TOT
Trapminemalicious.high.ml.score
EmsisoftGen:Trojan.Chinky.2 (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Trojan.Chinky.2
JiangminWorm/Basun.abfu
WebrootW32.Obfuscated.Gen
GoogleDetected
AviraTR/Dropper.Gen
VaristW32/VB.W.gen!Eldorado
Antiy-AVLTrojan[Downloader]/Win32.VB
KingsoftWin32.Worm.Basun.ajp
XcitiumWorm.Win32.Basun.ajp0@14jyik
ArcabitTrojan.Chinky.2
ZoneAlarmWorm.Win32.Basun.ajp
MicrosoftWorm:Win32/Vobfus.F
CynetMalicious (score: 100)
AhnLab-V3Win32/Basun.worm.Gen
Acronissuspicious
VBA32Trojan-Downloader.VB.NZX
ALYacGen:Trojan.Chinky.2
MAXmalware (ai score=100)
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/Downloader.WFP
TrendMicro-HouseCallWORM_VB.TOT
RisingTrojan.DL.Win32.VBcode.ij (CLASSIC)
YandexTrojan.GenAsa!9OBQBLME9hg
IkarusTrojan.VB.Inject
MaxSecureWorm.W32.Basun.ajp
FortinetW32/VBNA.G!tr
AVGWin32:AutoRun-AYY [Wrm]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Win32/TrojanDownloader.VB.NZX?

Win32/TrojanDownloader.VB.NZX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment