Spy

Win32/Spy.KeyLogger.PHT removal guide

Malware Removal

The Win32/Spy.KeyLogger.PHT is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Spy.KeyLogger.PHT virus can do?

  • Uses Windows utilities for basic functionality
  • Authenticode signature is invalid

How to determine Win32/Spy.KeyLogger.PHT?


File Info:

name: 11E95F017FA8DEE67D0E.mlw
path: /opt/CAPEv2/storage/binaries/fc765f8ca88935694d4362282a109d65fc1cfc4d4a5b3d2714952bffc987ac12
crc32: 950462FD
md5: 11e95f017fa8dee67d0e330cf720a992
sha1: 86241dc72afdf5d7ed4bcbc8235eeccc6a71aa4a
sha256: fc765f8ca88935694d4362282a109d65fc1cfc4d4a5b3d2714952bffc987ac12
sha512: 9abca65040427128694eccb8f958b06b8b32c7e03675433c471ca8c54590f8143dd9f3e42fb97880a437cadbcadeb76b9627d732766cd8606ce6e03b5e54879d
ssdeep: 12288:dGvTu1fUe4bPM8lAIhyS9RfVPizeD0zKH1jN9tffGkHm6FTtQPa:QvTu1f0T+kRfVi7I1jN9tmkxtsa
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T143152829FB0665F4D617A3B2869EEB379B047A198022EF7FFF5BDA04A4330123C49155
sha3_384: e8010b5a9567850dada608602d1071ef19c9412ff82d72dcea948608ccfec3406bd3a56f5c965a79bf0066732793894d
ep_bytes: 83ec1cc7042401000000ff1520934e00
timestamp: 2021-08-12 17:38:21

Version Info:

0: [No Data]

Win32/Spy.KeyLogger.PHT also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.KeyLogger.4!c
DrWebTrojan.Encoder.25634
MicroWorld-eScanTrojan.GenericKD.46789709
FireEyeTrojan.GenericKD.46789709
McAfeeGenericRXPJ-UP!11E95F017FA8
MalwarebytesGeneric.Malware/Suspicious
ZillyaTrojan.Keylogger.Win32.73319
SangforTrojan.Win32.Tnega.ml
K7AntiVirusSpyware ( 0051fabf1 )
AlibabaTrojanSpy:Win32/KeyLogger.280f6819
K7GWSpyware ( 0051fabf1 )
Cybereasonmalicious.72afdf
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Spy.KeyLogger.PHT
APEXMalicious
CynetMalicious (score: 100)
BitDefenderTrojan.GenericKD.46789709
AvastWin32:Trojan-gen
TencentWin32.Trojan.Spy.Zfow
EmsisoftTrojan.GenericKD.46789709 (B)
F-SecureTrojan.TR/Spy.KeyLogger.hdfef
VIPRETrojan.GenericKD.46789709
McAfee-GW-EditionGenericRXPJ-UP!11E95F017FA8
SophosMal/Generic-S
IkarusTrojan-Spy.Agent
WebrootW32.Trojan.Gen
AviraTR/Spy.KeyLogger.hdfef
Antiy-AVLTrojan[Spy]/Win32.KeyLogger
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Generic.D2C9F44D
GDataTrojan.GenericKD.46789709
GoogleDetected
AhnLab-V3Trojan/Win.Generic.C4593179
VBA32Trojan.Encoder
ALYacTrojan.GenericKD.46789709
MAXmalware (ai score=83)
Cylanceunsafe
PandaTrj/Chgt.AD
YandexTrojanSpy.KeyLogger!WphIJBG0U+k
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/KeyLogger.PHT!tr
AVGWin32:Trojan-gen
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Win32/Spy.KeyLogger.PHT?

Win32/Spy.KeyLogger.PHT removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment