Worm

Worm:Win32/Stuxnet.B removal guide

Malware Removal

The Worm:Win32/Stuxnet.B is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Worm:Win32/Stuxnet.B virus can do?

  • Sample contains Overlay data
  • Presents an Authenticode digital signature
  • CAPE extracted potentially suspicious content
  • CAPE detected the shellcode get eip malware family
  • Yara detections observed in process dumps, payloads or dropped files

How to determine Worm:Win32/Stuxnet.B?


File Info:

name: 37FC7C5D89F1E5A96F54.mlw
path: /opt/CAPEv2/storage/binaries/70f8789b03e38d07584f57581363afa848dd5c3a197f2483c6dfa4f3e7f78b9b
crc32: D289F468
md5: 37fc7c5d89f1e5a96f54318df1a2b905
sha1: c81e8e4af351161519c3a30db103aa2fd2abbf29
sha256: 70f8789b03e38d07584f57581363afa848dd5c3a197f2483c6dfa4f3e7f78b9b
sha512: c0f0a22c2b320015f4d61d552231ec6a94e1636bfd3634d85bcac2960b0b9c2ea99a3d78cfd2dd99c65fc9b89b9f7bd5242081729518c34a12cbf59d630ee23c
ssdeep: 384:3pjc0UYZy1Ttvyph2adBRd64h+Erl2zB5ls7O7hBWnqTYJLWd6jqdybz:3p4U0Lm2aKF56iBOLAmIybz
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T15CB27B6787052061D9861D70B2EADE67AA3EF3150BC440C3D62609552FA27F97B3D24B
sha3_384: e1a11c484599ef01a99c508a7cc1cd6f730680ab22d05ba1b515f481baaccfd4ac9aca4e40996094d56392a81ccb8358
ep_bytes: 558bec6aff68d855001068a828001064
timestamp: 2010-02-03 06:32:00

Version Info:

0: [No Data]

Worm:Win32/Stuxnet.B also known as:

BkavW32.Common.8EC24DAA
MicroWorld-eScanTrojan.GenericKD.72265638
FireEyeGeneric.mg.37fc7c5d89f1e5a9
CAT-QuickHealWorm.Stuxnet.B4
SkyhighStuxnet
McAfeeStuxnet
VIPRETrojan.GenericKD.72265638
SangforWorm.Win32.Stuxnet.Vw1u
K7AntiVirusTrojan ( 0017fd821 )
K7GWTrojan ( 0017fd821 )
VirITTrojan.Win32.Stuxnet.A
SymantecTrojan.Gen.NPE.2
tehtrisGeneric.Malware
ESET-NOD32Win32/Stuxnet.A
TrendMicro-HouseCallWORM_STUXNET.SM
AvastWin32:Duqu-F [Rtk]
ClamAVWin.Trojan.Agent-229176
KasperskyWorm.Win32.Stuxnet.b
BitDefenderTrojan.GenericKD.72265638
NANO-AntivirusTrojan.Win32.Stuxnet.bufnr
SUPERAntiSpywareWorm.Stuxnet/Variant
EmsisoftTrojan.GenericKD.72265638 (B)
GoogleDetected
F-SecureTrojan.TR/Spy.Gen
DrWebTrojan.Stuxnet.1
ZillyaWorm.Stuxnet.Win32.599
TrendMicroWORM_STUXNET.SM
SophosTroj/Stuxnet-C
JiangminTrojanDropper.Stuxnet.b
WebrootW32.Trojan.Worm-Stuxnet
VaristW32/Stuxnet.XQKX-9030
AviraTR/Spy.Gen
MAXmalware (ai score=100)
Antiy-AVLWorm/Win32.Stuxnet
MicrosoftWorm:Win32/Stuxnet.B
XcitiumWorm.Win32.Stuxnet.A@222lpi
ArcabitTrojan.Generic.D44EAFA6
ViRobotDropper.Stuxnet.25720
ZoneAlarmWorm.Win32.Stuxnet.b
GDataTrojan.GenericKD.72265638
CynetMalicious (score: 99)
AhnLab-V3Worm/Win.Stuxnet.C5290979
ALYacWorm.Stuxnet
TACHYONTrojan-Dropper/W32.Stuxnet.25720
VBA32Worm.Stuxnet
Cylanceunsafe
TencentMalware.Win32.Gencirc.10b367ea
MaxSecureTrojan.Malware.1698334.susgen
FortinetW32/Stuxnet.B!worm
AVGWin32:Duqu-F [Rtk]

How to remove Worm:Win32/Stuxnet.B?

Worm:Win32/Stuxnet.B removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment