Spy

Should I remove “Win32/Spy.Guildma.BT”?

Malware Removal

The Win32/Spy.Guildma.BT is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Spy.Guildma.BT virus can do?

  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/Spy.Guildma.BT?


File Info:

crc32: 3EB30CAC
md5: a46e080ede91dda83d3450c85d2d4279
name: A46E080EDE91DDA83D3450C85D2D4279.mlw
sha1: 2fb2febc766b7854abc12f62b233498d43cb0b08
sha256: f91d6c395dd08f65caa2d67eb93dedb14b61a5f51d9c8fff7032f4cbec8d2f82
sha512: 51f1099ff132829eef65162f954b4076b018a141694147351a2a8ec472a5949b80c0186e1b0ff2ef66d438d330d80f008313874443e10789250fd4bc79356bf5
ssdeep: 6144:YSiprytGHYxuLndxMdkp5EjffAxwRrR3U5lwqUH/WaUSPfRw39EBR6l:MpWtGHTLndxMW9xwBFU5qaSnRY9EBi
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Spy.Guildma.BT also known as:

BkavW32.AIDetectVM.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Fugrafa.78274
FireEyeGeneric.mg.a46e080ede91dda8
ALYacGen:Variant.Fugrafa.78274
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderGen:Variant.Fugrafa.78274
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.ede91d
CyrenW32/Delf.PRYN-2050
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Adware-gen [Adw]
Kasperskynot-a-virus:HEUR:AdWare.Win32.Generic
AlibabaTrojanSpy:Win32/Guildma.3ffb97b7
NANO-AntivirusRiskware.Win32.Mlw.evrnlh
AegisLabAdware.Win32.Generic.2!c
TencentMalware.Win32.Gencirc.10b3d4a3
Ad-AwareGen:Variant.Fugrafa.78274
SophosMal/Generic-S
ComodoApplicUnwnt@#3dor5d3myxjvk
F-SecureHeuristic.HEUR/AGEN.1128237
TrendMicroTROJ_SYMMI_GK2700A6.UVPM
McAfee-GW-EditionBehavesLike.Win32.Generic.gh
EmsisoftGen:Variant.Fugrafa.78274 (B)
IkarusBackdoor.Win32.Yobdam
AviraHEUR/AGEN.1128237
Antiy-AVLGrayWare[AdWare]/Win32.AGeneric
MicrosoftTrojan:Win32/Skeeyah.A!rfn
ArcabitTrojan.Fugrafa.D131C2
SUPERAntiSpywareAdware.Graftor/Variant
ZoneAlarmnot-a-virus:HEUR:AdWare.Win32.Generic
GDataGen:Variant.Fugrafa.78274
CynetMalicious (score: 85)
AhnLab-V3Trojan/Win32.Skeeyah.R215041
McAfeeGenericRXDB-QC!A46E080EDE91
MAXmalware (ai score=98)
VBA32TScope.Trojan.Delf
MalwarebytesGeneric.Trojan.Malicious.DDS
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/Spy.Guildma.BT
TrendMicro-HouseCallTROJ_SYMMI_GK2700A6.UVPM
RisingTrojan.Generic@ML.100 (RDML:QpeVBWA28ezf6sQ+VNQy/A)
YandexTrojan.GenAsa!SSHmfWAdWlk
SentinelOneStatic AI – Suspicious PE
FortinetW32/Injector.NSKH!tr
BitDefenderThetaAI:Packer.2CC4B7F621
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Win32/Virus.Adware.b51

How to remove Win32/Spy.Guildma.BT?

Win32/Spy.Guildma.BT removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment