Trojan

Trojan:Win32/Alreay malicious file

Malware Removal

The Trojan:Win32/Alreay is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Alreay virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan:Win32/Alreay?


File Info:

crc32: EFF09523
md5: 97aaf130cfa251e5207ea74b2558293d
name: upload_file
sha1: c7e7dd96fefca77bb1097aeeefef126d597126bd
sha256: 9a776b895e93926e2a758c09e341accb9333edc1243d216a5e53f47c6043c852
sha512: d8b750263ac8b295a934ef60a694108257c489055c6aee24bae000d70d0bdde70934e8c2a157d38c15469bc5fb2a6cfcb733ddd4729ba05200dfa243913cf73d
ssdeep: 3072:6U5r72JE+FYWR0jZLShk4cPT/QzSaQ0sCFneZTznIhZJJcrJ1GHeV9:6U5uJpYnZL05STQNddFnAnGZIrV
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan:Win32/Alreay also known as:

MicroWorld-eScanTrojan.Generic.22528938
ALYacSpyware.PWS.KRBanker.acu
CylanceUnsafe
ZillyaTrojan.Alreay.Win32.42
AegisLabTrojan.Win32.Alreay.4!c
SangforMalware
K7AntiVirusSpyware ( 005198041 )
AlibabaTrojanSpy:Win32/Alreay.ac1688bf
K7GWSpyware ( 005198041 )
Cybereasonmalicious.0cfa25
ArcabitTrojan.Generic.D157C3AA
TrendMicroTrojan.Win32.KLIYENTPROXY.AA.tmsr
CyrenW32/Alreay.SQQX-6406
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win32/NukeSped.HM
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Trojan.Agent-6971031-0
KasperskyHEUR:Trojan-Banker.Win32.Alreay.gen
BitDefenderTrojan.Generic.22528938
NANO-AntivirusTrojan.Win32.Alreay.ettzed
AvastWin32:Trojan-gen
TencentWin32.Trojan.Spy.Huzi
Ad-AwareTrojan.Generic.22528938
TACHYONTrojan/W32.VIVACIOUSGIFT.232960
ComodoMalware@#2rxdo5qs8skkr
F-SecureTrojan.TR/NukeSped.paztv
VIPRETrojan.Win32.Generic!BT
InvinceaMal/Generic-R + Troj/Banker-GUU
FireEyeGeneric.mg.97aaf130cfa251e5
SophosTroj/Banker-GUU
IkarusTrojan-Spy.Agent
JiangminTrojan.Banker.Alreay.ar
WebrootW32.Trojan.GenKD
AviraTR/NukeSped.paztv
eGambitUnsafe.AI_Score_98%
Antiy-AVLTrojan[Banker]/Win32.Alreay
MicrosoftTrojan:Win32/Alreay
ViRobotTrojan.Win32.Agent.232960.P
ZoneAlarmHEUR:Trojan-Banker.Win32.Alreay.gen
GDataTrojan.Generic.22528938
CynetMalicious (score: 85)
AhnLab-V3Trojan/Win32.Alreay.C2198031
McAfeeGenericRXFQ-MX!97AAF130CFA2
MAXmalware (ai score=100)
VBA32TrojanBanker.Alreay
MalwarebytesBackdoor.NukeSped
TrendMicro-HouseCallTrojan.Win32.KLIYENTPROXY.AA.tmsr
RisingTrojan.Generic@ML.92 (RDML:3y7xRwdV0Wr9dehzXps08w)
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Banker.ADRO!tr.bdr
BitDefenderThetaGen:NN.ZexaF.34216.oqW@a8iO7id
AVGWin32:Trojan-gen
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Win32/Trojan.97a

How to remove Trojan:Win32/Alreay?

Trojan:Win32/Alreay removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment