Spy

What is “Win32/Spy.VB.NVT”?

Malware Removal

The Win32/Spy.VB.NVT is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Spy.VB.NVT virus can do?

  • Executable code extraction
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/Spy.VB.NVT?


File Info:

crc32: F6A3771E
md5: 501756df372274d3e9764b251e4536c3
name: 501756DF372274D3E9764B251E4536C3.mlw
sha1: df3f474665008774819d5f5964d545c7b59fc3db
sha256: 9eba89915c533109aabbacae08b6cb1dd872e3ea0c1fed76e30dadfd559663ae
sha512: 5e5dd8a0ffe8ea51d6e5a0654fb9788839ca18824a086eb8f3d1b46238662a1dbbcfe764d62d65ab5ed7341a4345fda74dc5c33f5b27d4129d302258b4238aa2
ssdeep: 12288:+P044UfP0OOP0Eq31PPs2CNm0j6TeluzpjEXpjItLpDsQknywJNPTKZ8jMxs5+l:+9xXOS3dAm0bL
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: CarderLogger
FileVersion: 1.00
CompanyName: BlackHatToolZxa9
ProductName: Project1
ProductVersion: 1.00
FileDescription: Coded By Abracadabra
OriginalFilename: CarderLogger.exe

Win32/Spy.VB.NVT also known as:

K7AntiVirusSpyware ( 0055e3db1 )
LionicTrojan.Win32.Agent.4!c
CynetMalicious (score: 100)
CylanceUnsafe
ZillyaTrojan.Keylogger.Win32.51012
SangforTrojan.Win32.Agent.zbge
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanSpy:Win32/Generic.73d36824
K7GWSpyware ( 0055e3db1 )
Cybereasonmalicious.665008
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Spy.VB.NVT
APEXMalicious
AvastWin32:Trojan-gen
ClamAVWin.Trojan.Agent-5425230-0
KasperskyTrojan.Win32.Agent.zbge
NANO-AntivirusTrojan.Win32.VB.fapxlw
TencentWin32.Trojan.Agent.Srdf
SophosMal/Generic-S
ComodoMalware@#5mno0isyl9at
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionArtemis!Trojan
JiangminTrojan.Agent.argi
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1133040
Antiy-AVLTrojan/Generic.ASMalwS.2F76D9
KingsoftWin32.Troj.Agent.zb.(kcloud)
MicrosoftTrojanSpy:Win32/Skeeyah.A!rfn
TACHYONTrojan/W32.VB-Agent.3739648.B
McAfeeArtemis!501756DF3722
VBA32Trojan.Agent
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_GEN.R002H0CEJ21
YandexTrojan.Agent!18fFZvckWyQ
IkarusTrojan-Spy.Agent
FortinetW32/Agent.NDT!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Win32/Spy.VB.NVT?

Win32/Spy.VB.NVT removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment