Spy Trojan

Should I remove “Trojan-Spy.Win32.Stealer.nzd”?

Malware Removal

The Trojan-Spy.Win32.Stealer.nzd is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Spy.Win32.Stealer.nzd virus can do?

  • Unconventionial language used in binary resources: Farsi
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan-Spy.Win32.Stealer.nzd?


File Info:

crc32: FD780FE9
md5: 415cc7ecd231771bda66741b424484bc
name: readme.exe
sha1: 5330ee0641d1802114f158641ab10e6e7d35bd07
sha256: 50f8789e5de73c51e9ce28fbd2b461ebeed04bf8acdd2c478a82580884094fec
sha512: 8775bfb1aa3b1a53b417662938c3346670d64dfc35eebf48281964f4bb17a0493dba9527b3a7e7e8c40e552d2a3594eef2bc756786257340475e096e354123b7
ssdeep: 12288:E8ULgPAcnO+WT1W8QMxoxirlJQRZQqGu3:EyAmO+W8MxGiwvQqGu3
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0847 0x03fc

Trojan-Spy.Win32.Stealer.nzd also known as:

MicroWorld-eScanTrojan.GenericKD.41539292
CAT-QuickHealRansom.Stop.MP4
McAfeeTrojan-FRJR!415CC7ECD231
VIPRETrojan.Win32.Generic!BT
SangforMalware
CrowdStrikewin/malicious_confidence_60% (W)
BitDefenderTrojan.GenericKD.41539292
K7GWTrojan ( 005551251 )
K7AntiVirusTrojan ( 005551251 )
ArcabitTrojan.Generic.D279D6DC
TrendMicroTROJ_GEN.R002C0PH819
SymantecPacked.Generic.525
ESET-NOD32a variant of Win32/Kryptik.GVGK
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan-Spy.Win32.Stealer.nzd
AlibabaTrojanSpy:Win32/Stealer.70ab287e
NANO-AntivirusTrojan.Win32.Stealer.fvdlav
ViRobotTrojan.Win32.Z.Stealer.465408
RisingMalware.Obscure/Heur!1.9E03 (CLASSIC)
Ad-AwareTrojan.GenericKD.41539292
EmsisoftTrojan.GenericKD.41539292 (B)
ComodoMalware@#1u2jx6hr28z8h
F-SecureHeuristic.HEUR/AGEN.1043783
DrWebTrojan.Encoder.28004
ZillyaTrojan.Kryptik.Win32.1869778
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.AdwareInstCap.gh
FortinetW32/Kryptik.GVOI!tr
Trapminesuspicious.low.ml.score
FireEyeGeneric.mg.415cc7ecd231771b
SophosMal/GandCrab-H
IkarusTrojan-Spy.Agent
JiangminExploit.Nekto.au
AviraHEUR/AGEN.1043783
MAXmalware (ai score=100)
Endgamemalicious (high confidence)
MicrosoftTrojan:Win32/Windigo.DSK!MTB
ZoneAlarmTrojan-Spy.Win32.Stealer.nzd
AhnLab-V3Win-Trojan/MalPe30.Suspicious.X2019
Acronissuspicious
VBA32BScope.Trojan.Downloader
ALYacTrojan.GenericKD.41539292
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
TrendMicro-HouseCallTrojan.Win32.SODINOK.SM.hp
SentinelOneDFI – Suspicious PE
eGambitUnsafe.AI_Score_99%
GDataTrojan.GenericKD.41539292
BitDefenderThetaGen:NN.ZexaF.33558.CyW@aK8@XTaG
AVGWin32:Malware-gen
Cybereasonmalicious.641d18
AvastWin32:Malware-gen
Qihoo-360Win32/Trojan.Spy.651

How to remove Trojan-Spy.Win32.Stealer.nzd?

Trojan-Spy.Win32.Stealer.nzd removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment