Spy Trojan

How to remove “Trojan-Spy.Win32.Stealer.vpr”?

Malware Removal

The Trojan-Spy.Win32.Stealer.vpr is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Spy.Win32.Stealer.vpr virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan-Spy.Win32.Stealer.vpr?


File Info:

crc32: 5D66C0F3
md5: 6e4175506370cf59ea18259a930ecf51
name: 6E4175506370CF59EA18259A930ECF51.mlw
sha1: 3586a69f9a6e46322100a51656945a06a640f49e
sha256: 267451746a31e44310ba42873656c980b323b262836f9d23b4d27d1a99f1b7f3
sha512: 9e9d92edcd8d6de0e3488a118e800a57dab495d73f8a962769fe671b0130756206bc41cf775f02be19dd05b7e9cf8978f6cb069d860e4199cb1e98fea5db35ec
ssdeep: 1536:RxKY+T6KW5CvEyXWvE344wAL5LO8XvdPTwZI3sq5gnToIfnIOlIOjcTp5X1XZ:HDKW1LgppLRHMY0TBfJvjcTp5XhZ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: Tersanctus.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: Tersanctus.exe

Trojan-Spy.Win32.Stealer.vpr also known as:

K7AntiVirusTrojan-Downloader ( 005639e71 )
LionicTrojan.Win32.Stealer.l!c
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Siggen2.60676
CynetMalicious (score: 100)
ALYacGen:Variant.Dopping.1
CylanceUnsafe
ZillyaTrojan.Stealer.Win32.9655
SangforTrojan.Win32.Skeeyah.A
AlibabaTrojanSpy:Win32/Stealer.35641661
K7GWTrojan-Downloader ( 005639e71 )
Cybereasonmalicious.06370c
CyrenW32/Trojan.IKYU-7322
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.GCD
APEXMalicious
AvastWAT:Blacked-AB [Trj]
KasperskyTrojan-Spy.Win32.Stealer.vpr
BitDefenderGen:Variant.Dopping.1
NANO-AntivirusTrojan.Win32.Stealer.iexlgf
MicroWorld-eScanGen:Variant.Dopping.1
TencentWin32.Trojan-spy.Stealer.Wqmz
Ad-AwareGen:Variant.Dopping.1
SophosMal/Generic-S
ComodoMalware@#1zo93xex9ucu2
BitDefenderThetaGen:NN.ZexaF.34266.iq0@aycDuke
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
FireEyeGeneric.mg.6e4175506370cf59
EmsisoftGen:Variant.Dopping.1 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1127982
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:Win32/Mamson.A!ac
ArcabitTrojan.Dopping.1
SUPERAntiSpywareTrojan.Agent/Gen-MSIL
GDataGen:Variant.Dopping.1
Acronissuspicious
McAfeeArtemis!6E4175506370
MAXmalware (ai score=100)
MalwarebytesSpyware.RedLineStealer
RisingTrojan.Generic@ML.100 (RDML:cG9Q3eu9xZKfhiFvDsYysQ)
IkarusTrojan-Downloader.MSIL.Small
MaxSecureTrojan.Malware.73763925.susgen
FortinetAdware/Agent
AVGWAT:Blacked-AB [Trj]
Paloaltogeneric.ml

How to remove Trojan-Spy.Win32.Stealer.vpr?

Trojan-Spy.Win32.Stealer.vpr removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment