Trojan

Win32/TrojanDownloader.VB.RCU removal tips

Malware Removal

The Win32/TrojanDownloader.VB.RCU is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/TrojanDownloader.VB.RCU virus can do?

  • Executable code extraction
  • Attempts to modify proxy settings
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
api.nuget.org

How to determine Win32/TrojanDownloader.VB.RCU?


File Info:

crc32: 28E15553
md5: 2d540860d91cd25cc8d61555523c76ff
name: ad8965e531424cb34120bf0c1b4b98d4ab769bed534d9a36583364e9572332fa
sha1: 822db2fd78b39b49547cce2f7fb92b276c74bcef
sha256: ad8965e531424cb34120bf0c1b4b98d4ab769bed534d9a36583364e9572332fa
sha512: 8d866fa0be8ce78766e939ae57c662bd32db8dc6c0a0458cc26787f15ad2afa2636fa7165d3197126a56bd0ba127eb0568b4eb67604cab8d6db0d9e7ff2e8aae
ssdeep: 3072:fkgI7tj1WtGRco5NDPN2/tlD0liXYWq7tM8XV3oyzy:cg+VND0Q/1r
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: required
FileVersion: 1.00
CompanyName: Microsoft
ProductName: Project1
ProductVersion: 1.00
OriginalFilename: required.exe

Win32/TrojanDownloader.VB.RCU also known as:

BkavW32.PoserataDFM.Trojan
DrWebTrojan.DownLoader24.59727
MicroWorld-eScanGen:Trojan.Heur.jm0@c9NBIBii
FireEyeGeneric.mg.2d540860d91cd25c
CAT-QuickHealTrojan.EternalRock.A3
ALYacWorm.EternalRocks
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusEmailWorm ( 004c16271 )
BitDefenderGen:Trojan.Heur.jm0@c9NBIBii
K7GWEmailWorm ( 004c16271 )
Cybereasonmalicious.0d91cd
TrendMicroTROJ_ETEROCK.A
BitDefenderThetaAI:Packer.65E0A5721C
SymantecW32.Eternalrocks
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.EternalRocks1-6319293-0
GDataGen:Trojan.Heur.jm0@c9NBIBii
KasperskyTrojan.Win32.Reconyc.hxvw
AlibabaTrojanDownloader:Win32/Reconyc.9a27fa23
NANO-AntivirusTrojan.Win32.Agent.eofleh
ViRobotTrojan.Win32.Z.Agent.147456.AFA
AegisLabTrojan.Win32.Reconyc.4!c
RisingWorm.EternalRocks-01!1.AAFE (KTSE)
Ad-AwareGen:Trojan.Heur.jm0@c9NBIBii
SophosTroj/Eterocks-B
ComodoTrojWare.Win32.TrojanDownloader.VB.PMEA@4rev5s
F-SecureTrojan.TR/ATRAPS.Gen
BaiduWin32.Trojan.EternalRocks.c
Invinceaheuristic
McAfee-GW-EditionGenericRXBO-IA!2D540860D91C
Trapminemalicious.high.ml.score
CMCTrojan.Win32.Reconyc!O
EmsisoftGen:Trojan.Heur.jm0@c9NBIBii (B)
SentinelOneDFI – Suspicious PE
JiangminWorm.EternalRocks.j
MaxSecureTrojan.Malware.10860511.susgen
AviraTR/Agent.yrnex
Antiy-AVLWorm[Net]/Win32.EternalRock.e
Endgamemalicious (high confidence)
ArcabitTrojan.Heur.E0AFB9
ZoneAlarmTrojan.Win32.Reconyc.hxvw
MicrosoftTrojan:Win32/Eterock.A
TACHYONTrojan/W32.VB-Reconyc.147456
AhnLab-V3Trojan/Win32.Eterock.R201027
Acronissuspicious
McAfeeGenericRXBO-IA!2D540860D91C
MAXmalware (ai score=100)
VBA32Trojan.MSIL.gen.a.1
MalwarebytesWorm.EternalRocks
PandaTrj/Genetic.gen
ESET-NOD32Win32/TrojanDownloader.VB.RCU
TrendMicro-HouseCallTROJ_ETEROCK.A
TencentWin32.Trojan.Reconyc.Hssq
YandexTrojan.Reconyc!
IkarusWorm.DoomsDay
eGambitUnsafe.AI_Score_100%
FortinetW32/Reconyc.B!tr
WebrootW32.Trojan.Gen
AVGWin32:EternalRocks-D [Trj]
AvastWin32:EternalRocks-D [Trj]
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360HEUR/QVM41.2.EBA7.Malware.Gen

How to remove Win32/TrojanDownloader.VB.RCU?

Win32/TrojanDownloader.VB.RCU removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment