Spy Trojan

TrojanSpy.Snake removal tips

Malware Removal

The TrojanSpy.Snake is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanSpy.Snake virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Authenticode signature is invalid

How to determine TrojanSpy.Snake?


File Info:

name: 5B31CA9F86A8CB608208.mlw
path: /opt/CAPEv2/storage/binaries/5c5176b6c75b99c90c7cfa20611e8728b8e65d1538795cd5a58829019435b8ef
crc32: EA405CF1
md5: 5b31ca9f86a8cb608208c735a6bcffb5
sha1: 04df29193075296f9cd9b9798a16ce8317172dcd
sha256: 5c5176b6c75b99c90c7cfa20611e8728b8e65d1538795cd5a58829019435b8ef
sha512: f98964642ea9b2e00655fab5c75c452df883b254f6f1908b8180b55e1a9bb0846a98dc9d6b1ef6ab6bda0dae4affa826327a67d4fc28b3af305cd8928d75e199
ssdeep: 12288:sMw4EAPcLqJ5l1P15NUhT3yZrn0aHDyq9DSXALFW97caLU9:sMwtAPcLqJ5l195NUx3yBDyq0GP9
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T194E412556B7CC927D2A2783F6522B24C30AEAE145F56C564BB633AFD9EBC7021D07203
sha3_384: 54bc6131976fcd9b333c2cb3b877ba6f14216a49e9e3d68500cbad3f35f2b60a110f186d3f38e760107f743b64a9fbf6
ep_bytes: 81ecd40200005356576a205f33db6801
timestamp: 2020-08-01 02:43:17

Version Info:

Comments: Tekstjustering Kommunikationsprocessens
CompanyName: Ricciaceae Nonpermissive
FileVersion: 1.1.0.0
LegalCopyright: Dissemblingly Putoff
LegalTrademarks: tennis Strammerne Konkurrencevilkaarets
OriginalFilename: Empasm.exe
Translation: 0x0409 0x04e4

TrojanSpy.Snake also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanTrojan.GenericKD.66140454
FireEyeTrojan.GenericKD.66140454
ALYacTrojan.GenericKD.66140454
MalwarebytesGeneric.Injector.Malicious.DDS
SangforTrojan.Win32.Zapchast.Vldn
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Zapchast.94e21986
K7GWTrojan ( 005a197d1 )
K7AntiVirusTrojan ( 005a197d1 )
VirITTrojan.Win32.Genus.DPWR
CyrenW32/Agent.LNWT-7996
SymantecTrojan Horse
APEXMalicious
AvastWin32:Evo-gen [Trj]
CynetMalicious (score: 100)
BitDefenderTrojan.GenericKD.66140454
TencentWin32.Trojan.Zapchast.Hajl
F-SecureTrojan.TR/Inject.ruyxi
VIPRETrojan.GenericKD.66140454
TrendMicroTrojan.Win32.FRS.VSNW1CC23
McAfee-GW-EditionBehavesLike.Win32.Browser.jc
SophosMal/Generic-S
WebrootW32.Malware.Gen
AviraTR/Inject.ruyxi
XcitiumMalware@#2acuq8l7yb4y2
ArcabitTrojan.Generic.D3F13926
ZoneAlarmHEUR:Trojan.NSIS.Makoob.gen
GoogleDetected
VBA32TrojanSpy.Snake
Cylanceunsafe
PandaTrj/Agent.AY
YandexTrojan.Igent.bZ2zkN.4
FortinetW32/BVJ!tr
AVGWin32:Evo-gen [Trj]

How to remove TrojanSpy.Snake?

TrojanSpy.Snake removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment