Malware

MonitoringTool:Win32/Despy removal

Malware Removal

The MonitoringTool:Win32/Despy is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MonitoringTool:Win32/Despy virus can do?

  • Unconventionial language used in binary resources: Russian
  • Authenticode signature is invalid

How to determine MonitoringTool:Win32/Despy?


File Info:

name: EEBF702ACB8C9E28E55C.mlw
path: /opt/CAPEv2/storage/binaries/54d575646c6cb06a1d7f2095cc867abe5b0d7d1a2040e86e236d5968ca61cba7
crc32: F24030B2
md5: eebf702acb8c9e28e55cda732e58df69
sha1: dd9de837bfdcc7f74fb4c3492869ac7783dffbf2
sha256: 54d575646c6cb06a1d7f2095cc867abe5b0d7d1a2040e86e236d5968ca61cba7
sha512: d0966b5be469881ff9cfcb92c9d1bcff950b43176679c3446f07996469e8b5de3dc938f55add681fa4066c3a20a39f5a3c9990c4a709e359dc0ff7b339415985
ssdeep: 12288:U/UevjCWi4lQJy+gQC17h6tpx6HiSZtzo+fRAWhSRC2JhUIyWB:U/UBJJrvQCS3LfRDSRC2JL1
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1D4056B327EBA8036C81246349F2BAEB5293ABF017510174727B43D3DFEBA7423515E96
sha3_384: 3812a8670f5be5ee55bf08f46ffbbf270be9bb9db0ff9c731aaa0a2c55859cdf9132cdd6618b6372573bb40e227a33ac
ep_bytes: eb1066623a432b2b484f4f4b90e97cd3
timestamp: 2005-01-21 16:33:17

Version Info:

0: [No Data]

MonitoringTool:Win32/Despy also known as:

LionicRiskware.Win32.DesktopSpy.1!c
MicroWorld-eScanApplication.DesktopSpy.A
FireEyeApplication.DesktopSpy.A
SkyhighSpyware-PD.a
Cylanceunsafe
ZillyaBackdoor.PePatch.Win32.106737
SangforSpyware.Win32.Desktopspy.Vpkt
AlibabaRiskWare:Win32/DesktopSpy.0f5ea745
K7GWTrojan ( 0001140e1 )
K7AntiVirusTrojan ( 0001140e1 )
SymantecSpyware.DesktopSpy
ESET-NOD32a variant of Win32/Monitor.DesktopSpy.A
CynetMalicious (score: 100)
Kasperskynot-a-virus:Monitor.Win32.DesktopSpy
BitDefenderApplication.DesktopSpy.A
NANO-AntivirusRiskware.Win32.DesktopSpy.oatfm
AvastWin32:Rootkit-gen [Rtk]
TencentMalware.Win32.Gencirc.13ac814e
EmsisoftApplication.DesktopSpy.A (B)
F-SecurePotentialRisk.PUA/DesktopSpy.BD
VIPREApplication.DesktopSpy.A
TrendMicroSpyware_TRAK_DesktopSpyAgent
SophosMal/Generic-S
JiangminMonitor.DesktopSpy.a
WebrootSystem.Monitor.Desktop.Scout
VaristW32/Monitor.ISDR-1370
AviraPUA/DesktopSpy.BD
Antiy-AVLRiskWare[Monitor]/Win32.DesktopSpy
MicrosoftMonitoringTool:Win32/Despy
XcitiumMalware@#oe3chq036p6l
ArcabitApplication.DesktopSpy.A
ZoneAlarmnot-a-virus:Monitor.Win32.DesktopSpy
GDataApplication.DesktopSpy.A
GoogleDetected
McAfeeSpyware-PD.a
MAXmalware (ai score=100)
MalwarebytesGeneric.Malware/Suspicious
PandaApplication/DesktopSpy
TrendMicro-HouseCallSpyware_TRAK_DesktopSpyAgent
RisingTrojan.Bitrep!8.F596 (CLOUD)
MaxSecureTrojan.Malware.6116.susgen
AVGWin32:Rootkit-gen [Rtk]
DeepInstinctMALICIOUS

How to remove MonitoringTool:Win32/Despy?

MonitoringTool:Win32/Despy removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment