Spy Trojan

About “TrojanSpy:Win32/Glaze.A” infection

Malware Removal

The TrojanSpy:Win32/Glaze.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanSpy:Win32/Glaze.A virus can do?

  • Uses Windows utilities for basic functionality
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Attempts to create or modify a Browser Helper Object
  • Uses suspicious command line tools or Windows utilities

How to determine TrojanSpy:Win32/Glaze.A?


File Info:

name: 17DA4925591E0E0ADE8E.mlw
path: /opt/CAPEv2/storage/binaries/16989d7dde819ca880e2f1ee987a0f57371b3775f397e8832c494f0ddffc863a
crc32: 32A82389
md5: 17da4925591e0e0ade8e049392128b48
sha1: 6310216f9a75c0e3196dc3d50ae7278adce216ec
sha256: 16989d7dde819ca880e2f1ee987a0f57371b3775f397e8832c494f0ddffc863a
sha512: c31e069991008930c02e595a2a8370dfb5a2fd0a26a91ebd21e8f886c65188100a65bb2956410b6ddaa4bcc710ffc96afd701349810dbd83f10d4785acc6a7a1
ssdeep: 1536:wH8DyVaNxWQWhw7chc3zqt/VO3Fwa2MjhqUxeZOrkZt982H8PH2H8Pp2H8Pi2H8K:wHOeQ0hUWVCmaRjhqUxeZOrkZt982H8z
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1669329B2050E0B52EB8BE1FB5AA5B3D041CA30471DF4A8BE75537784A37D396F00B666
sha3_384: 06de2bbd23f81191b4c968641fa7cc3b6aaa1006ab56595f561cff71ccaa16f1178422a6dae7021ba8492e734f20b5ae
ep_bytes: 558bec6aff68d020400068e01a400064
timestamp: 2007-06-04 13:23:46

Version Info:

0: [No Data]

TrojanSpy:Win32/Glaze.A also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Banker.7!c
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Banker.10855
MicroWorld-eScanDropped:Trojan.Spy.Finanz.I
ClamAVWin.Spyware.15007-2
CMCGeneric.Win32.17da492559!MD
CAT-QuickHealTrojan.Banker
McAfeePWS-Banker.d
ZillyaTrojan.Banker.Win32.107283
SangforSuspicious.Win32.Save.ins
AlibabaMalware:Win32/km_24e51.None
Cybereasonmalicious.5591e0
BitDefenderThetaAI:Packer.01DB6B4624
VirITTrojan.Win32.Banker3.OOM
CyrenW32/Banker.GWZN-1522
SymantecInfostealer.Bancos
ESET-NOD32a variant of Win32/Spy.Banker.CKW
APEXMalicious
CynetMalicious (score: 100)
KasperskyTrojan-Banker.Win32.Banker.cqt
BitDefenderDropped:Trojan.Spy.Finanz.I
NANO-AntivirusTrojan.Win32.Banker.belwmd
AvastWin32:Banker-CDZ [Trj]
TencentWin32.Trojan.Generic.Mjgl
EmsisoftDropped:Trojan.Spy.Finanz.I (B)
F-SecureTrojan-Spy:W32/Ambler.gen!B
VIPREDropped:Trojan.Spy.Finanz.I
TrendMicroTSPY_BANKER.LJU
McAfee-GW-EditionBehavesLike.Win32.Dropper.nc
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.17da4925591e0e0a
SophosMal/Behav-112
SentinelOneStatic AI – Suspicious PE
GDataDropped:Trojan.Spy.Finanz.I
JiangminTrojan.Banker.Banker.nx
WebrootW32.Trojan.Trojan-Phisher.Gen.X
AviraTR/Drop.Jay
MAXmalware (ai score=100)
Antiy-AVLTrojan[Banker]/Win32.Banker
XcitiumMalware@#3w8jnnjddby2
ArcabitTrojan.Spy.Finanz.I
ViRobotTrojan.Win32.Banker.93696
ZoneAlarmTrojan-Banker.Win32.Banker.cqt
MicrosoftTrojanSpy:Win32/Glaze.A
GoogleDetected
AhnLab-V3Trojan/Win32.Banker.C45366
VBA32BScope.Trojan.MulDrop
ALYacDropped:Trojan.Spy.Finanz.I
TACHYONTrojan-Spy/W32.Banker.93696
Cylanceunsafe
PandaTrj/Genetic.gen
TrendMicro-HouseCallTSPY_BANKER.LJU
RisingTrojan.Spy.Win32.Agent.sa (CLASSIC)
YandexTrojan.GenAsa!IQ5CTXcolCc
IkarusMemScanTrojan.Spy.Banker
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Banker.CNQ!tr
AVGWin32:Banker-CDZ [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove TrojanSpy:Win32/Glaze.A?

TrojanSpy:Win32/Glaze.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment