Spy

Win32/Spy.KeyLogger.PEQ removal guide

Malware Removal

The Win32/Spy.KeyLogger.PEQ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Spy.KeyLogger.PEQ virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Win32/Spy.KeyLogger.PEQ?


File Info:

name: 7F58A940FF5A03AFBDE6.mlw
path: /opt/CAPEv2/storage/binaries/ae412c173fbb1ce02d2d70b2381d11f1d58e563701729de23ac16437460078ca
crc32: CA8053DD
md5: 7f58a940ff5a03afbde6c2f8f69aa3d9
sha1: 69e453085e75dc69cd24b678b0c8544318545f96
sha256: ae412c173fbb1ce02d2d70b2381d11f1d58e563701729de23ac16437460078ca
sha512: 7f9ccd757237b833fec8996c52111c48150515948bfaf7270ff9af5b09d903398a701b372e7e480fb68507017e958c9f459b9e0c6abe4c13c42ec66300bc6c3c
ssdeep: 1536:4yuxjt71oJ8SZOqW5qLVhwimmThZY1EDl:4ysjh1oysOqW5qLjwimmThZYE
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T179A3FA31BA40807BF9C302FB5DFD5AF952A8AC1047E911F370859AF6861A3F62637587
sha3_384: b3ca9b6cbc80dff8e2c74ecccbcfbbc3fe8b71271508ca3b3e17a08e255392889235aa648a36b67bb44d0e814cb76658
ep_bytes: e964b20000e9c8e20000e95ac60000e9
timestamp: 2021-12-02 18:47:28

Version Info:

0: [No Data]

Win32/Spy.KeyLogger.PEQ also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.47543728
FireEyeGeneric.mg.7f58a940ff5a03af
ALYacTrojan.GenericKD.47543728
CylanceUnsafe
K7AntiVirusSpyware ( 004ef3be1 )
AlibabaTrojanSpy:Win32/KeyLogger.56a35a6f
K7GWSpyware ( 004ef3be1 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Spy.KeyLogger.PEQ
APEXMalicious
BitDefenderTrojan.GenericKD.47543728
AvastWin32:Trojan-gen
Ad-AwareTrojan.GenericKD.47543728
SophosMal/Generic-S
TrendMicroTROJ_GEN.R002C0PL621
McAfee-GW-EditionGenericRXQB-DS!7F58A940FF5A
EmsisoftTrojan.GenericKD.47543728 (B)
AviraHEUR/AGEN.1204662
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GridinsoftRansom.Win32.Wacatac.sa
GDataWin32.Trojan.Agent.26IM7I
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.DS.C4810734
McAfeeGenericRXQB-DS!7F58A940FF5A
MAXmalware (ai score=87)
VBA32BScope.Exploit.Shellcode
TrendMicro-HouseCallTROJ_GEN.R002C0PL621
RisingTrojan.Generic@ML.92 (RDMK:dPOeZJqe7FUiFc9tjDpVyA)
IkarusTrojan.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/KeyLogger.PEQ!tr
AVGWin32:Trojan-gen

How to remove Win32/Spy.KeyLogger.PEQ?

Win32/Spy.KeyLogger.PEQ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment