Spy

Win32/Spy.Virkonni.F removal instruction

Malware Removal

The Win32/Spy.Virkonni.F is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Spy.Virkonni.F virus can do?

  • Authenticode signature is invalid

How to determine Win32/Spy.Virkonni.F?


File Info:

name: 9F74CAB31CF1DB263458.mlw
path: /opt/CAPEv2/storage/binaries/d1ad53674e2a111d940c6b6ceeb0a88877f553c54bea16928bf43bf5cdbb1545
crc32: 136FF0BF
md5: 9f74cab31cf1db263458b5745a2f9c69
sha1: abbba48a5383323090c498d7ef7304c48cce65b6
sha256: d1ad53674e2a111d940c6b6ceeb0a88877f553c54bea16928bf43bf5cdbb1545
sha512: aae0aaf21ea7a820f91b07ed7a4df18231fb24cf8e516ea3c6a12e558c1035f72e22eeeee0fe6268e50815ae996dace53de527cc1dda5dbdcb14ba4344b4158e
ssdeep: 1536:1UZEsAEMhXVuqR6rvOYeFBzsNIlUku6ukDdV:1UamMhlusO+zN3DdV
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1B1736C2076A1C076D456293098AAC3B25B7E7C326BF4C4CB7F85077E5F603C0AA79366
sha3_384: ed9181841e9e41588f29f5be455adaa6d8b918d80382850cdba1c360800657983c71a26f88308d971ab9e88c10471ca5
ep_bytes: 8bff558bec837d0c017505e8c0610000
timestamp: 2017-07-03 07:46:17

Version Info:

CompanyName: Microsoft Corporation
FileDescription: Workstation Service Client DLL
FileVersion: 1.0.0.1
InternalName: virus-dl.dll
LegalCopyright: Copyright (C) 2016
OriginalFilename: virus-dl.dll
ProductName: TODO:
ProductVersion: 1.0.0.1
Translation: 0x0409 0x04b0

Win32/Spy.Virkonni.F also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Konni.4!c
MicroWorld-eScanGen:Heur.Bodegun.1
FireEyeGen:Heur.Bodegun.1
SkyhighBackDoor-FDOK!9F74CAB31CF1
McAfeeBackDoor-FDOK!9F74CAB31CF1
Cylanceunsafe
ZillyaTrojan.Agent.Win32.814136
SangforSpyware.Win32.Virkonni.Vgzn
AlibabaTrojanSpy:Win32/Virkonni.29a52df7
K7GWSpyware ( 005119091 )
K7AntiVirusSpyware ( 005119091 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Spy.Virkonni.F
TrendMicro-HouseCallTROJ_FRS.VSN1EJ18
Paloaltogeneric.ml
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Heur.Bodegun.1
NANO-AntivirusTrojan.Win32.Bodegun.ernulp
AvastWin32:Malware-gen
TencentMalware.Win32.Gencirc.13ae6aec
EmsisoftGen:Heur.Bodegun.1 (B)
VIPREGen:Heur.Bodegun.1
TrendMicroTROJ_FRS.VSN1EJ18
SophosMal/Generic-R
MAXmalware (ai score=100)
JiangminTrojan.Generic.guhuw
WebrootW32.Gen.BT
GoogleDetected
Antiy-AVLTrojan/Win32.Konni
MicrosoftRansom:MacOS/FileCoder
XcitiumMalware@#lonjitu7ou7o
ArcabitTrojan.Bodegun.1
ViRobotTrojan.Win32.S.Konni.80384
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Heur.Bodegun.1
AhnLab-V3Trojan/Win32.Browlogger.R204885
BitDefenderThetaGen:NN.ZedlaF.36804.eu8@aqC8qWmi
ALYacTrojan.Agent.Qkkbal
VBA32BScope.Trojan.Tiggre
PandaTrj/GdSda.A
RisingRansom.Filecoder!8.55A8 (CLOUD)
YandexTrojan.Bodegun!gu13YZZPNHU
IkarusTrojan-Spy.Agent
FortinetW32/Agent.PFE!tr.spy
AVGWin32:Malware-gen
DeepInstinctMALICIOUS
alibabacloudTrojan[spy]:Win/Virkonni.F

How to remove Win32/Spy.Virkonni.F?

Win32/Spy.Virkonni.F removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment