Spy Trojan

How to remove “TrojanSpy:Win32/Nivdort.DA”?

Malware Removal

The TrojanSpy:Win32/Nivdort.DA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanSpy:Win32/Nivdort.DA virus can do?

  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Creates a copy of itself
  • Deletes executed files from disk

How to determine TrojanSpy:Win32/Nivdort.DA?


File Info:

name: DB4475EDA227B3A5B426.mlw
path: /opt/CAPEv2/storage/binaries/37b9bfd314fb83a8e9f3f43c4c8dc8011dcdc15d39fd9c0ce0e12e28bbf38310
crc32: 3F102331
md5: db4475eda227b3a5b426c2ba2d42ccc0
sha1: 5ec68d463e419d71de884010e31469655b0e5a57
sha256: 37b9bfd314fb83a8e9f3f43c4c8dc8011dcdc15d39fd9c0ce0e12e28bbf38310
sha512: befd5e8c1bd5dcf0d944ce9741c979781fbbe1be6840205fc56671669567330c675df76b286bcda4ee0a87294e370a75f96176d9b2ecc650a3861ee5e04fcc45
ssdeep: 3072:4uui1KYZipXK/VUL/SFsi8KhhjW/SOOXw7566tP2Q2Ruo0RxUyVKeB5MoQw:FldiqL7CP4O55tPdffUyV/cU
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T17124AE26DA401023CA0766FC4B5977B1EFEF22A6B328564983D535C968B03DDE63371B
sha3_384: 0b4881da6fec43cd61de6dab58e75c8c761f3a450fab7c10c2f38b9bb50edc7e13b511e67e68bbd3f3e44501998827fd
ep_bytes: 8b0d20e84300b883861b9cc1e10a2bc1
timestamp: 2014-08-01 18:58:35

Version Info:

0: [No Data]

TrojanSpy:Win32/Nivdort.DA also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Bayrob.4!c
MicroWorld-eScanGen:Variant.Lazy.219050
FireEyeGeneric.mg.db4475eda227b3a5
CAT-QuickHealTrojanSpy.Nivdort.DR3
SkyhighBehavesLike.Win32.Generic.dc
McAfeeTrojan-FHQT!DB4475EDA227
Cylanceunsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 004dc2a31 )
AlibabaTrojanSpy:Win32/Nivdort.c83d9f37
K7GWTrojan ( 004dc2a31 )
Cybereasonmalicious.63e419
ArcabitTrojan.Lazy.D357AA
BitDefenderThetaAI:Packer.5DE938CE1E
SymantecTrojan.Bayrob!gen6
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Bayrob.BA
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Lazy.219050
NANO-AntivirusTrojan.Win32.Bayrob.kfxgob
AvastWin32:Vupa [Cryp]
RisingTrojan.Bayrob!1.A3C6 (CLASSIC)
EmsisoftGen:Variant.Lazy.219050 (B)
BaiduWin32.Trojan.Generic.ay
F-SecureHeuristic.HEUR/AGEN.1318579
DrWebTrojan.DownLoader46.43372
VIPREGen:Variant.Lazy.219050
TrendMicroTROJ_BAYROB.SM7
SophosMal/Bayrob-A
IkarusTrojan.Win32.Bayrob
WebrootW32.Trojan.Gen
GoogleDetected
AviraHEUR/AGEN.1318579
Antiy-AVLTrojan/Win32.Bayrob
Kingsoftmalware.kb.a.1000
MicrosoftTrojanSpy:Win32/Nivdort.DA
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Variant.Lazy.219050
VaristW32/Nivdort.G.gen!Eldorado
AhnLab-V3Trojan/Win32.Nivdort.C1317722
Acronissuspicious
VBA32BScope.TrojanSpy.Nivdort
ALYacGen:Variant.Lazy.219050
MAXmalware (ai score=83)
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_BAYROB.SM7
TencentMalware.Win32.Gencirc.13fad060
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.7164915.susgen
FortinetW32/Bayrob.AQ!tr
AVGWin32:Vupa [Cryp]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove TrojanSpy:Win32/Nivdort.DA?

TrojanSpy:Win32/Nivdort.DA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment