Categories: Spy

Win32/Spy.KeyLogger.NJK removal instruction

The Win32/Spy.KeyLogger.NJK file is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

What Win32/Spy.KeyLogger.NJK virus can do?

  • Executable code extraction
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself
  • Anomalous binary characteristics

How to determine Win32/Spy.KeyLogger.NJK?


General:

Operating System: Windows 7 / 8 / 8.1 / 10 Virus Name: malicious.fd1a01

File Info:

Name: image.exe

Size: 581632

Type: PE32 executable (GUI) Intel 80386, for MS Windows

MD5: 609b31697442f224deb7fcd4170e8fd3

SHA1: 11aed89fd1a0141fcc4626c1411239e5afe6ee8c

SH256: 3e6593faa630ec2c87ff8406f08264bb055982363400fddeaca502b0019ce6fd

Version Info:

[No Data]

Win32/Spy.KeyLogger.NJK also known as:

ALYac Gen:Variant.Ulise.86587
APEX Malicious
AVG Win32:Trojan-gen
Ad-Aware Gen:Variant.Ulise.86587
AegisLab Trojan.Win32.Malicious.4!c
AhnLab-V3 Trojan/Win32.RL_Sonbokli.R299266
Alibaba TrojanSpy:Win32/Agent.1e57c887
Antiy-AVL Trojan/Win32.Agent
Arcabit Trojan.Ulise.D1523B
Avast Win32:Trojan-gen
Avira HEUR/AGEN.1042703
BitDefender Gen:Variant.Ulise.86587
BitDefenderTheta Gen:NN.ZevbaF.32251.Jm0@aWYAUiki
Comodo Malware@#6qqs81ivfdhd
CrowdStrike win/malicious_confidence_90% (W)
Cybereason malicious.fd1a01
Cylance Unsafe
Cyren W32/Agent.BBK.gen!Eldorado
DrWeb Trojan.MulDrop11.28491
ESET-NOD32 a variant of Win32/Spy.KeyLogger.NJK
Endgame malicious (high confidence)
F-Prot W32/Agent.BBK.gen!Eldorado
F-Secure Heuristic.HEUR/AGEN.1042703
FireEye Generic.mg.609b31697442f224
Fortinet W32/KeyLogger.NJK!tr
GData Win32.Trojan-Stealer.Agent.AOX
Ikarus Trojan-Spy.Agent
Invincea heuristic
K7AntiVirus Spyware ( 0000d4291 )
K7GW Spyware ( 0000d4291 )
Kaspersky Trojan.Win32.Agent.xacdkm
MaxSecure Trojan.Malware.74687069.susgen
McAfee RDN/Generic PWS.y
MicroWorld-eScan Gen:Variant.Ulise.86587
Microsoft Trojan:Win32/Bluteal!rfn
NANO-Antivirus Trojan.Win32.KeyLogger.ggzwxp
Paloalto generic.ml
Panda Trj/CI.A
Qihoo-360 Win32/Trojan.c45
Rising Spyware.KeyLogger!8.12F (TFE:4:fFxuKk8l1hT)
SentinelOne DFI – Malicious PE
Sophos Mal/Generic-S
Symantec Infostealer.Donx
TrendMicro TSPY_VBKEYLOG.SM
TrendMicro-HouseCall TSPY_VBKEYLOG.SM
Zillya Trojan.Agent.Win32.1173782
ZoneAlarm Trojan.Win32.Agent.xacdkm

How to remove Win32/Spy.KeyLogger.NJK?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Share
Published by
Paul Valéry

Recent Posts

What is “Worm.Win32.VBNA.algn”?

The Worm.Win32.VBNA.algn is considered dangerous by lots of security experts. When this infection is active,…

7 mins ago

BScope.TrojanPSW.LdPinch removal instruction

The BScope.TrojanPSW.LdPinch is considered dangerous by lots of security experts. When this infection is active,…

13 mins ago

Win32:Regrun-JN [Trj] removal

The Win32:Regrun-JN [Trj] is considered dangerous by lots of security experts. When this infection is…

17 mins ago

What is “Lazy.507273”?

The Lazy.507273 is considered dangerous by lots of security experts. When this infection is active,…

23 mins ago

Should I remove “Generic.ShellCode.Marte.3.24C92027”?

The Generic.ShellCode.Marte.3.24C92027 is considered dangerous by lots of security experts. When this infection is active,…

28 mins ago

What is “Trojan.Generic.35586327”?

The Trojan.Generic.35586327 is considered dangerous by lots of security experts. When this infection is active,…

33 mins ago