Spy Trojan

What is “Trojan-Spy.Win32.Noon.avbq”?

Malware Removal

The Trojan-Spy.Win32.Noon.avbq is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Spy.Win32.Noon.avbq virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Trojan-Spy.Win32.Noon.avbq?


File Info:

crc32: 5B18DE05
md5: 0a29ed32a2694d87a110c66b13951725
name: regasm.exe
sha1: 591ada1294197b44eaa5a6e44b674102dec09fc7
sha256: 4f773731ae3ed2c9ff720b219bd1bdfbd86fd688117e7f595a829c805e36eb46
sha512: a060c8e9e150e10003b0cedc5eafcc863887e479b726b519ee96cb8012cc1d4f8e261141b7229ba1983e52e171110be1c82150505568ca3f8ac2f01c7f829d96
ssdeep: 24576:Gu6J33O0c+JY5UZ+XC0kGso6Fa9jrA+Vj113xYCbEFahioXt7Xa7I0mrROMWY:Iu0c++OCvkGs9Fa9jrA+Nx/bhioXte7
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0809 0x04b0

Trojan-Spy.Win32.Noon.avbq also known as:

DrWebTrojan.Siggen9.13495
MicroWorld-eScanTrojan.GenericKD.42631567
FireEyeGeneric.mg.0a29ed32a2694d87
Qihoo-360Generic/HEUR/QVM10.2.5FAD.Malware.Gen
McAfeeArtemis!0A29ED32A269
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.42631567
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.294197
TrendMicroTrojan.Win32.WACATAC.THBBDBO
F-ProtW32/AutoIt.NS.gen!Eldorado
APEXMalicious
AvastScript:SNH-gen [Trj]
GDataTrojan.GenericKD.42631567
KasperskyTrojan-Spy.Win32.Noon.avbq
AlibabaTrojanSpy:Win32/Injector.f30b9c65
NANO-AntivirusTrojan.Win32.Noon.hbltow
ViRobotTrojan.Win32.Z.Nymeria.1480704.A
RisingTrojan.Obfus/Autoit!1.C075 (CLASSIC)
Endgamemalicious (high confidence)
EmsisoftTrojan.Autoit (A)
F-SecureTrojan.TR/Autoit.inplh
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Downloader.tc
Trapminemalicious.moderate.ml.score
SophosMal/Generic-S
CyrenW32/AutoIt.NS.gen!Eldorado
AviraTR/Autoit.inplh
MAXmalware (ai score=85)
MicrosoftTrojan:Win32/Ditertag.A
ArcabitTrojan.Generic.D28A818F
ZoneAlarmTrojan-Spy.Win32.Noon.avbq
AhnLab-V3Trojan/AU3.Wacatac.S1079
Acronissuspicious
ALYacSpyware.Noon.gen
Ad-AwareTrojan.GenericKD.42631567
MalwarebytesTrojan.MalPack.AutoIt
PandaTrj/CI.A
ESET-NOD32a variant of Win32/Injector.Autoit.FCL
TrendMicro-HouseCallTrojan.Win32.WACATAC.THBBDBO
TencentWin32.Trojan-spy.Noon.Eon
IkarusTrojan-Spy.LokiBot
FortinetAutoIt/Injector.FCK!tr
AVGScript:SNH-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_80% (W)
MaxSecureTrojan.Malware.300983.susgen

How to remove Trojan-Spy.Win32.Noon.avbq?

Trojan-Spy.Win32.Noon.avbq removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment