Malware

Packer.PESpin.A.cyucaSpPXdci removal instruction

Malware Removal

The Packer.PESpin.A.cyucaSpPXdci is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Packer.PESpin.A.cyucaSpPXdci virus can do?

  • Executable code extraction
  • At least one process apparently crashed during execution
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • Reads data out of its own binary image
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Installs itself for autorun at Windows startup
  • Checks for the presence of known devices from debuggers and forensic tools
  • Checks the system manufacturer, likely for anti-virtualization
  • Anomalous binary characteristics

How to determine Packer.PESpin.A.cyucaSpPXdci?


File Info:

crc32: 2C0FC80F
md5: cbba2bf8ca1bd33c7b1c304fac7008c7
name: CBBA2BF8CA1BD33C7B1C304FAC7008C7.mlw
sha1: e26daac7b80bf000a0cb62ec39544068e0fef4cb
sha256: 4ec0fc4407489ab3390e8cd7e7cddb12c714037a3163820ec0332dd2979c9a6a
sha512: 72c692bb9f067ec596da370d2415f0ec0975761e94d25905d6a5441c846febda716711b1753f3044aca49d7a4cd12a4d74c039205867e61c22063acca508ae2b
ssdeep: 768:Q7h35YVMoBg0RMjOqY1nagGOgSSiUNojC8c0eKfrBmSEYAUenDjU:Q7h6VMXKqY1alfoG8reKflql4
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Packer.PESpin.A.cyucaSpPXdci also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005107d41 )
Elasticmalicious (high confidence)
DrWebTrojan.DownLoader18.59296
CynetMalicious (score: 100)
ALYacGen:Packer.PESpin.A.cyucaSpPXdci
CylanceUnsafe
CrowdStrikewin/malicious_confidence_90% (W)
K7GWTrojan ( 005107d41 )
Cybereasonmalicious.8ca1bd
CyrenW32/Heuristic-162!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Packed.PESpin.A suspicious
APEXMalicious
AvastWin32:Malware-gen
KasperskyBackdoor.Win32.Farfli.adnj
BitDefenderGen:Packer.PESpin.A.cyucaSpPXdci
MicroWorld-eScanGen:Packer.PESpin.A.cyucaSpPXdci
TencentWin32.Backdoor.Farfli.Tbsk
Ad-AwareGen:Packer.PESpin.A.cyucaSpPXdci
SophosML/PE-A + Mal/Packer
BitDefenderThetaAI:Packer.94199BAF20
VIPRETrojan.Win32.Packer.PESpinv1.32 (ep)
TrendMicroCryp_PESpin
McAfee-GW-EditionBehavesLike.Win32.Trojan.nc
FireEyeGeneric.mg.cbba2bf8ca1bd33c
EmsisoftGen:Packer.PESpin.A.cyucaSpPXdci (B)
SentinelOneStatic AI – Malicious PE
JiangminBackdoor.Farfli.asi
WebrootW32.Backdoor.Gen
eGambitUnsafe.AI_Score_87%
MicrosoftTrojan:Win32/Wacatac.B!ml
GridinsoftPack.Win32.Gen.bot!ep-22340
ArcabitGen:Packer.PESpin.A.cyucaSpPXdci
GDataGen:Packer.PESpin.A.cyucaSpPXdci
AhnLab-V3Backdoor/Win.Farfli.C4518469
McAfeeArtemis!CBBA2BF8CA1B
MAXmalware (ai score=82)
VBA32BScope.Backdoor.Ursap
TrendMicro-HouseCallCryp_PESpin
RisingMalware.Heuristic!ET#98% (RDMK:cmRtazrPpVkZKKx3OwhdIC+ITcPR)
YandexTrojan.GenAsa!kOOMAdhqm8s
IkarusPacker.PESpin
MaxSecureTrojan.Malware.300983.susgen
FortinetRiskware/Farfli
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Packer.PESpin.A.cyucaSpPXdci?

Packer.PESpin.A.cyucaSpPXdci removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment