Malware

Should I remove “Win32:Downloader-CBY [Trj]”?

Malware Removal

The Win32:Downloader-CBY [Trj] is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32:Downloader-CBY [Trj] virus can do?

  • Authenticode signature is invalid

How to determine Win32:Downloader-CBY [Trj]?


File Info:

name: 04A00BDCCDFA14517830.mlw
path: /opt/CAPEv2/storage/binaries/f3e637820e48643ae5356ef2a378fd7ff2cfc453574e4d37e679f164a3f95300
crc32: 4C53C395
md5: 04a00bdccdfa145178306427d22cacd3
sha1: 6d532f291f31a52364c04aefbf58771d47ecf802
sha256: f3e637820e48643ae5356ef2a378fd7ff2cfc453574e4d37e679f164a3f95300
sha512: b18b548ababe1ad60f43fe8b7b70d9c85bc5146083b506856b5b168e142772ddd6c334639a5119c69238784a785a81e7f7a2b07c9cfd0386b61408c3cf7d6b23
ssdeep: 384:KJZMWceEtSTK2zNRZJhjJwKwV1NbYfX6mOlsHdh5WcvnRR:gMWZnKQtpwKwZbct9n5WY
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C7E29EB3D52A84F2EBB2073BD92C41178B5107D663D7B118FD3A3E5F88247C4582869A
sha3_384: ac7089e1371afa68b8a4a554fae0aff43ea08b179aafc6f1b6df0cca493eeb2a7eea9dfe5e2cc00d3716f824814f5d15
ep_bytes: e9260000000000224770000000470000
timestamp: 2008-03-27 01:26:36

Version Info:

0: [No Data]

Win32:Downloader-CBY [Trj] also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Shutdowner.tnY0
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.04a00bdccdfa1451
CAT-QuickHealTrojan.GenericCS.S27489164
McAfeeGeneric Dropper.ahy
MalwarebytesGeneric.Malware/Suspicious
ZillyaTrojan.Shutdowner.Win32.4312
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 700000011 )
AlibabaTrojanDropper:Win32/Shutdowner.d3bb381a
K7GWTrojan ( 700000011 )
CrowdStrikewin/malicious_confidence_100% (D)
VirITTrojan.Win32.Shutdowner.BQQ
CyrenW32/Trojan.XHMJ-8180
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.ADD
APEXMalicious
ClamAVWin.Trojan.Agent-113344
KasperskyTrojan.Win32.Shutdowner.bqq
BitDefenderTrojan.FakeAntivirus.Gen
NANO-AntivirusTrojan.Win32.Shutdowner.viix
MicroWorld-eScanTrojan.FakeAntivirus.Gen
AvastWin32:Downloader-CBY [Trj]
TencentMalware.Win32.Gencirc.10b26be3
TACHYONTrojan/W32.Shutdowner.31232.B
SophosMal/EncPk-CZ
F-SecureTrojan-Downloader:W32/Renos.gen!C
DrWebTrojan.DownLoader.50219
VIPRETrojan.FakeAntivirus.Gen
TrendMicroTROJ_FAKEALE.SMJ
McAfee-GW-EditionGeneric Dropper.ahy
Trapminemalicious.moderate.ml.score
EmsisoftTrojan.FakeAntivirus.Gen (B)
IkarusTrojan.Vundo
GDataTrojan.FakeAntivirus.Gen
JiangminTrojan/Shutdowner.rp
AviraTR/Agent.irgws
Antiy-AVLTrojan/Win32.Shutdowner
XcitiumTrojWare.Win32.PkdKrap.AG@1naz70
ArcabitTrojan.FakeAntivirus.Gen
ViRobotTrojan.Win32.Downloader.31232.BD
ZoneAlarmTrojan.Win32.Shutdowner.bqq
MicrosoftTrojanDropper:Win32/Agent.UM
GoogleDetected
AhnLab-V3Trojan/Win32.Shutdowner.C81615
BitDefenderThetaAI:Packer.8D00D4161E
ALYacTrojan.FakeAntivirus.Gen
MAXmalware (ai score=100)
VBA32Trojan-Downloader.Win32.Small
Cylanceunsafe
PandaSpyware/Virtumonde
TrendMicro-HouseCallTROJ_FAKEALE.SMJ
RisingTrojan.Bulta!8.35D (TFE:2:vYtsZKmXdvB)
YandexTrojan.GenAsa!E9b6/13loO0
SentinelOneStatic AI – Malicious PE
FortinetW32/Kryptik.BV!tr
AVGWin32:Downloader-CBY [Trj]
Cybereasonmalicious.91f31a
DeepInstinctMALICIOUS

How to remove Win32:Downloader-CBY [Trj]?

Win32:Downloader-CBY [Trj] removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment