Spy

Mal/SpyNoon-A removal instruction

Malware Removal

The Mal/SpyNoon-A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/SpyNoon-A virus can do?

  • Detected script timer window indicative of sleep style evasion
  • Reads data out of its own binary image
  • A process created a hidden window
  • A scripting utility was executed
  • Network activity detected but not expressed in API logs

How to determine Mal/SpyNoon-A?


File Info:

crc32: EB18AA39
md5: 4e699636367fe56514f08e99cf25ac63
name: 4E699636367FE56514F08E99CF25AC63.mlw
sha1: cad43afcb95d91b701b389e58d19552daf1d5dd0
sha256: ad9772d6f566a170aff937281169b6fab61afa91478d7c9339441092f5914748
sha512: b1ad08d4d9afd27bf6b4a4af73b0d852f86ca476741de46450860a5357e3863e64976a738bc060770b44809d349fa7bb94cdd2c5b4c92f0c73a09b044a337824
ssdeep: 24576:U2G/nvxW3Ww0tFqiItGOuLfrxOC4pWqYEwRR+a:UbA30rISLtfq9a
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Mal/SpyNoon-A also known as:

Elasticmalicious (high confidence)
DrWebBackDoor.QuasarNET.5
CynetMalicious (score: 100)
ALYacTrojan.MSIL.Basic.8.Gen
ZillyaTrojan.ScriptKD.JS.10
Cybereasonmalicious.6367fe
CyrenW32/MSIL_Kryptik.EEI.gen!Eldorado
ESET-NOD32a variant of MSIL/Spy.Agent.CVT
APEXMalicious
AvastWin32:RATX-gen [Trj]
ClamAVWin.Malware.Uztuby-9848412-0
KasperskyHEUR:Backdoor.MSIL.LightStone.gen
BitDefenderTrojan.MSIL.Basic.8.Gen
MicroWorld-eScanTrojan.MSIL.Basic.8.Gen
Ad-AwareTrojan.MSIL.Basic.8.Gen
SophosMal/SpyNoon-A
BitDefenderThetaGen:NN.ZemsilF.34738.Tq0@am0ux5
McAfee-GW-EditionBehavesLike.Win32.Generic.th
FireEyeTrojan.MSIL.Basic.8.Gen
EmsisoftTrojan.MSIL.Basic.8.Gen (B)
SentinelOneStatic AI – Malicious SFX
MicrosoftTrojan:MSIL/SpyNoon.RTU!MTB
GDataWin32.Trojan.BSE.96XFQO
McAfeeGenericRXJH-DC!B9C6911372F2
MAXmalware (ai score=86)
MalwarebytesMalware.AI.1519748889
IkarusTrojan.MSIL.Spy
FortinetMSIL/Agent.CVT!tr
AVGWin32:RATX-gen [Trj]

How to remove Mal/SpyNoon-A?

Mal/SpyNoon-A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment