Spy Trojan

TrojanSpy:Win32/Lydra!atmnm removal

Malware Removal

The TrojanSpy:Win32/Lydra!atmnm is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanSpy:Win32/Lydra!atmnm virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Attempts to identify installed AV products by registry key
  • Operates on local firewall’s policies and settings

How to determine TrojanSpy:Win32/Lydra!atmnm?


File Info:

name: 3B183FEF62DBA2A0DB0A.mlw
path: /opt/CAPEv2/storage/binaries/80e2bddd9c971a1f2e381459966bad54c39f03d213a92697c69fcb2cf0b7e21e
crc32: FE00FA28
md5: 3b183fef62dba2a0db0aebf5fa76424b
sha1: 3d93b77f8e78c28e5106d6768af9a73884e5ede4
sha256: 80e2bddd9c971a1f2e381459966bad54c39f03d213a92697c69fcb2cf0b7e21e
sha512: b7b06c935d1bada89a5b6d3144f167a3add5ac974c29b31c2855da27cb5423e384b595242b92dd79bc873562e2e42118435af65a7a5eafcf0e83138f294c1323
ssdeep: 6144:BDh8VXVDHi8kc2IX8eNvAyne4DqGs2hMI8gLcRo8yrSleFwuLnB21Dtmlgu:MXxHi8kcRDbDquc28yelwzYtMgu
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E2A46E26F6F18433D1726A78CD1B9798683A7E503D28A8477BE51F4C5F39382392B193
sha3_384: 9ecd8cd409f90f2d092b61385db8e0864ea6f7a0db573492b4c34b05689759a53ec97170fd7c1d5e596b59e21d5cb2cf
ep_bytes: 558bec83c4e833c08945ec8945e8b87c
timestamp: 1992-06-19 22:22:17

Version Info:

0: [No Data]

TrojanSpy:Win32/Lydra!atmnm also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Convagent.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
FireEyeGeneric.mg.3b183fef62dba2a0
CAT-QuickHealTrojan.LydraIH.S28300073
McAfeeSpy-Lydra!c
Cylanceunsafe
VIPRETrojan.PWS.Lydra.A
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0054ffd11 )
BitDefenderTrojan.PWS.Lydra.A
K7GWTrojan ( 0054ffd11 )
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/Lydra.B.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Spy.Lydra
APEXMalicious
ClamAVWin.Malware.Lydra-9950125-0
KasperskyHEUR:Trojan-Spy.Win32.Convagent.gen
AlibabaMalware:Win32/km_2e29c91.None
NANO-AntivirusTrojan.Win32.LydraSpy.czewot
MicroWorld-eScanTrojan.PWS.Lydra.A
AvastWin32:Lydra-AK [Trj]
TencentTrojan.Win32.convagent.xa
EmsisoftTrojan.PWS.Lydra.A (B)
F-SecureTrojan.TR/ATRAPS.Gen
DrWebTrojan.LydraSpy.2460
ZillyaTrojan.Cosmu.Win32.3375
TrendMicroTSPY_LYDRA.SMM
McAfee-GW-EditionBehavesLike.Win32.Generic.gh
SophosTroj/Lydra-Gen
IkarusTrojan-Spy.Win32.Lydra
GDataWin32.Trojan.PSE.1B8XIQI
JiangminTrojan/Cosmu.fvw
WebrootW32.Trojan.PWS.Lydra
AviraTR/ATRAPS.Gen
MAXmalware (ai score=83)
Antiy-AVLTrojan[Spy]/Win32.Lydra
XcitiumTrojWare.Win32.Trojan.Lydra.~M@40gv33
ArcabitTrojan.PWS.Lydra.A
ViRobotTrojan.Win.Z.Lydra.470351
ZoneAlarmHEUR:Trojan-Spy.Win32.Convagent.gen
MicrosoftTrojanSpy:Win32/Lydra!atmnm
GoogleDetected
AhnLab-V3Trojan/Win.Lydra.R495990
VBA32BScope.Trojan.Renamer
ALYacTrojan.PWS.Lydra.A
TACHYONTrojan-Spy/W32.DP-Convagent.470351
MalwarebytesGeneric.Malware.AI.DDS
PandaGeneric Malware
TrendMicro-HouseCallTSPY_LYDRA.SMM
RisingSpyware.Lydra!1.6608 (CLASSIC)
YandexTrojan.GenAsa!RcvtotyVRuQ
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/LYDRA.SMB!tr
BitDefenderThetaGen:NN.ZelphiF.36250.CGX@aqgHx3h
AVGWin32:Lydra-AK [Trj]
Cybereasonmalicious.f62dba
DeepInstinctMALICIOUS

How to remove TrojanSpy:Win32/Lydra!atmnm?

TrojanSpy:Win32/Lydra!atmnm removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment