Risk Spy

RiskWare.SpySoft removal guide

Malware Removal

The RiskWare.SpySoft is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What RiskWare.SpySoft virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine RiskWare.SpySoft?


File Info:

crc32: 1438F82E
md5: 8955f59911190cc778c52536cb02eab7
name: 8955F59911190CC778C52536CB02EAB7.mlw
sha1: 2bb3b63e8b1f36a50f0aa592d852f97ff9a55b0e
sha256: e00403339f35030141295d387d6a827f23f7e9f360b213124aedc14c29173234
sha512: e982ec1e81820089fa5e1de0a304714cda26ca76c027b577fcf13bee2c09b6f73b3c385972aec78d730b465140a73ea6240e255911df8b41564bc43f38bbb145
ssdeep: 6144:d7U6JrbtgXWE4TIcpYipe6HMcMxg3sVT6zv:dsWhkcpYipeAMZqccz
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
InternalName: svchost.exe
FileVersion: 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
CompanyName: Microsoft Corporation
ProductName: Microsoftxae Windowsxae Operating System
ProductVersion: 5.1.2600.2180
FileDescription: Generic Host Process for Win32 Services
OriginalFilename: svchost.exe
Translation: 0x0409 0x04b0

RiskWare.SpySoft also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Sputnik.4!c
Elasticmalicious (high confidence)
ALYacGen:Heur.Mint.Titirez.mq0@IeHr3jbi
CylanceUnsafe
ZillyaTrojan.Injector.Win32.214878
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaBackdoor:Win32/Sputnik.d549c429
K7GWTrojan ( 0055e3991 )
K7AntiVirusTrojan ( 0055e3991 )
CyrenW32/Bifrost.C.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Injector.TT
APEXMalicious
AvastWin32:Trojan-gen
CynetMalicious (score: 100)
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Heur.Mint.Titirez.mq0@IeHr3jbi
NANO-AntivirusTrojan.Win32.Sputnik.ckaykb
MicroWorld-eScanGen:Heur.Mint.Titirez.mq0@IeHr3jbi
TencentWin32.Backdoor.Generic.Eawz
Ad-AwareGen:Heur.Mint.Titirez.mq0@IeHr3jbi
SophosMal/Generic-R + Mal/EncPk-ABFV
ComodoMalware@#1t2o2kbxl21je
BitDefenderThetaAI:Packer.D650A3481F
VIPREBehavesLike.Win32.Malware.mmu (mx-v)
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
FireEyeGeneric.mg.8955f59911190cc7
EmsisoftGen:Heur.Mint.Titirez.mq0@IeHr3jbi (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Crypt.FKM.Gen
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.56BEBF
KingsoftWin32.Hack.Undef.(kcloud)
MicrosoftPWS:Win32/Zbot!ml
ZoneAlarmHEUR:Backdoor.Win32.Sputnik.gen
GDataGen:Heur.Mint.Titirez.mq0@IeHr3jbi
Acronissuspicious
McAfeeArtemis!8955F5991119
MAXmalware (ai score=84)
VBA32BScope.Trojan.Wacatac
MalwarebytesRiskWare.SpySoft
RisingTrojan.Generic@ML.91 (RDML:wQ13TVEDNrOMvbyuIpBCEg)
IkarusTrojan-Downloader.Win32.Apher
FortinetW32/Injector.TT
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove RiskWare.SpySoft?

RiskWare.SpySoft removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment