Categories: Worm

Worm:Win32/VB malicious file

The Worm:Win32/VB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Worm:Win32/VB virus can do?

  • Executable code extraction
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Worm:Win32/VB?


File Info:

crc32: B484372Bmd5: a26ae93621d7f1d5942875a8ed12a46fname: A26AE93621D7F1D5942875A8ED12A46F.mlwsha1: a72e9f9094d33a1f0e5cbe3e776922e7714e901dsha256: 47c36becd70767af34e2654b1132e68a71299229a47d727f2a18fa09c4fced95sha512: 22c86242774e538dc9c0d6dc00e00a7ac29ed1452d4346b9f7631010d8fb1fceef176e9b452133f624586dfca6f9996254ea5aeac9537fbf5450a025e30f17d2ssdeep: 1536:kdvQVgd54vmxVdYOUqB4Y7hkKP54vTgzQJdQ:qvL7PdY0vvhdzOQtype: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0InternalName: My ThingsFileVersion: 1.00LegalTrademarks: 2007Comments: Butterfly.ProductName: butterflyProductVersion: 1.00OriginalFilename: My Things.exe

Worm:Win32/VB also known as:

Bkav W32.AIDetect.malware1
K7AntiVirus Trojan ( 005640b91 )
Elastic malicious (high confidence)
DrWeb Win32.HLLW.Schedl.1
Cynet Malicious (score: 99)
ALYac Win32.Worm.VB.NKE
Cylance Unsafe
Zillya Virus.VB.Win32.132
Sangfor Trojan.Win32.Save.a
CrowdStrike win/malicious_confidence_100% (D)
Alibaba Trojan:Win32/Starter.ali2000005
K7GW Trojan ( 005640b91 )
Cybereason malicious.621d7f
Baidu Win32.Worm.VB.ti
Cyren W32/Worm.IYYD-8094
Symantec W32.SillyDC
ESET-NOD32 Win32/VB.EU
Zoner Worm.Win32.381
APEX Malicious
Avast Win32:VB-ECI
ClamAV Win.Dropper.XtremeRAT-9858015-0
Kaspersky Virus.Win32.VB.eu
BitDefender Win32.Worm.VB.NKE
NANO-Antivirus Virus.Win32.VB.bcflkm
ViRobot Trojan.Win32.A.Cosmu.211388
MicroWorld-eScan Win32.Worm.VB.NKE
Tencent Trojan.Win32.VB.yoh
Ad-Aware Win32.Worm.VB.NKE
Sophos ML/PE-A + W32/VB-DWT
Comodo Win32.VB.EU@3gpg
BitDefenderTheta AI:Packer.A8375E2D1D
VIPRE Trojan.Win32.Generic!BT
TrendMicro WORM_VB.BLQ
McAfee-GW-Edition BehavesLike.Win32.Swisyn.dm
FireEye Generic.mg.a26ae93621d7f1d5
Emsisoft Win32.Worm.VB.NKE (B)
SentinelOne Static AI – Malicious PE
Jiangmin Win32/VB.e
Avira TR/VB.ayz
eGambit Unsafe.AI_Score_100%
Antiy-AVL Trojan/Generic.ASBOL.C0E
Kingsoft Win32.Troj.Generic.a.(kcloud)
Microsoft Worm:Win32/VB
GData Win32.Worm.VB.NKE
AhnLab-V3 HEUR/Fakon.mwf.X1381
McAfee Generic VB.do
MAX malware (ai score=89)
VBA32 Trojan.VBO.05370
Malwarebytes VB.Virus.FileInfector.DDS
Panda W32/Distas.F.worm
TrendMicro-HouseCall WORM_VB.BLQ
Rising Trojan.VB!1.6A80 (CLASSIC)
Yandex Trojan.GenAsa!g5zDFEdMqso
Ikarus Worm.Win32.VB
MaxSecure Virus.W32.VB.EU
Fortinet W32/VB.EU!worm
AVG Win32:VB-ECI
Qihoo-360 Worm.Win32.FakeFolder.BW

How to remove Worm:Win32/VB?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Share
Published by
Paul Valéry

Recent Posts

Application.Bundler.DomaIQ.Q (B) removal guide

The Application.Bundler.DomaIQ.Q (B) is considered dangerous by lots of security experts. When this infection is…

39 mins ago

Jatif.4890 information

The Jatif.4890 is considered dangerous by lots of security experts. When this infection is active,…

39 mins ago

Midie.127575 removal

The Midie.127575 is considered dangerous by lots of security experts. When this infection is active,…

39 mins ago

Malware.AI.1974689421 malicious file

The Malware.AI.1974689421 is considered dangerous by lots of security experts. When this infection is active,…

45 mins ago

Generic.Dacic.94CCEEA9.A.32453306 (file analysis)

The Generic.Dacic.94CCEEA9.A.32453306 is considered dangerous by lots of security experts. When this infection is active,…

1 hour ago

Fugrafa.312973 information

The Fugrafa.312973 is considered dangerous by lots of security experts. When this infection is active,…

2 hours ago