Spy Trojan

UDS:Trojan-Spy.Win32.KeyLogger removal instruction

Malware Removal

The UDS:Trojan-Spy.Win32.KeyLogger is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What UDS:Trojan-Spy.Win32.KeyLogger virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • A process created a hidden window
  • Authenticode signature is invalid
  • Sniffs keystrokes
  • Installs itself for autorun at Windows startup

How to determine UDS:Trojan-Spy.Win32.KeyLogger?


File Info:

name: 1F4BF0071D5D917690E8.mlw
path: /opt/CAPEv2/storage/binaries/841bd98414827e54e7811bc364aec3c8b84bd725a57a73c25792ba99dc4fe58c
crc32: A5CFEB66
md5: 1f4bf0071d5d917690e8c00ea5dc7bbb
sha1: 5335c2af9f8460afb36ea8a2aba07aba50f5726c
sha256: 841bd98414827e54e7811bc364aec3c8b84bd725a57a73c25792ba99dc4fe58c
sha512: 017d2ce11840ea6a7d73af36d2ade229a58497bb103003bc37afc8ea715736b0bafacf58d68c062386ea310a1f8683ec570e0638cf38b2ca7ef44e182622c744
ssdeep: 768:acSWRo5hmkgs67f3Db5Zd95UXXjz6iiaaAgS146LIKt48W+3/V1gdg4b3I0LcF3X:acSWRo5Ikgs67f3Db5Zd95UXXjz6iiaf
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T117D21A23B6578BB2E71403F529266765837FBC200F2252C3F3DEE5591A345D2AC3686B
sha3_384: baf4873770ef735381fd7109f0e8a8a560b21a6ed04ed94bd3441907676abdf5e0573b9d156b7433bf1122568dd4eaae
ep_bytes: e803040000e974feffff558bec8b4508
timestamp: 2022-05-04 22:13:28

Version Info:

0: [No Data]

UDS:Trojan-Spy.Win32.KeyLogger also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
FireEyeGeneric.mg.1f4bf0071d5d9176
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (W)
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Spy.KeyLogger.PPL
KasperskyUDS:Trojan-Spy.Win32.KeyLogger.gen
SentinelOneStatic AI – Suspicious PE
AviraHEUR/AGEN.1234646
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
APEXMalicious
RisingTrojan.Generic@AI.84 (RDMK:cmRtazpBN+sW/ESjdVbkSrinvPVf)
MaxSecureTrojan.Malware.300983.susgen

How to remove UDS:Trojan-Spy.Win32.KeyLogger?

UDS:Trojan-Spy.Win32.KeyLogger removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment