Malware

PWS:Win32/Stealer.N!bit (file analysis)

Malware Removal

The PWS:Win32/Stealer.N!bit is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PWS:Win32/Stealer.N!bit virus can do?

  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine PWS:Win32/Stealer.N!bit?


File Info:

crc32: 764F783B
md5: 2ceed258336f77beb48f403dbc6ec265
name: 2CEED258336F77BEB48F403DBC6EC265.mlw
sha1: 7668d2b4b501b64cb0c782335ce4dfbf3cdc89ca
sha256: e017f6855e4034c7ad6983e3aaecb35776b1c9eee9526aa6aa4ee8eeff7bf515
sha512: 1e46d2823e6e33553c614f3042b42479751456177db7077b5a6375246dc5f972755f0fc9005871da1c018f29f81aa22661c6b895a8c4836a2f521e539c1de0c2
ssdeep: 12288:jf6qPabkyePR1fIabct4CnUeTH6jxolE5+0aELIyteYLbtEo18l+EpPog:jf6qPPR1fb7/Lql4BakIJYLbFLY
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

PWS:Win32/Stealer.N!bit also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00564f7e1 )
LionicTrojan.Win32.Nymaim.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Nymaim.226
CynetMalicious (score: 100)
ALYacTrojan.Mint.Jamg.C
CylanceUnsafe
ZillyaTrojan.Nymaim.Win32.11025
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
AlibabaTrojanPSW:Win32/Nymaim.d6e85e09
K7GWTrojan ( 00564f7e1 )
Cybereasonmalicious.8336f7
CyrenW32/Kryptik.MN.gen!Eldorado
SymantecPacked.Generic.525
ESET-NOD32a variant of Win32/Kryptik.GLMV
APEXMalicious
AvastFileRepMetagen [Malware]
ClamAVWin.Keylogger.Azorult-9846875-1
KasperskyTrojan.Win32.Nymaim.bfng
BitDefenderTrojan.Mint.Jamg.C
NANO-AntivirusTrojan.Win32.Nymaim.fiybxw
MicroWorld-eScanTrojan.Mint.Jamg.C
TencentWin32.Trojan.Nymaim.Hvtu
Ad-AwareTrojan.Mint.Jamg.C
SophosMal/Generic-S
ComodoTrojWare.Win32.TrojanSpy.Ursnif.EM@7vyz23
BitDefenderThetaGen:NN.ZexaF.34170.SyW@aCSMMehi
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
FireEyeGeneric.mg.2ceed258336f77be
EmsisoftTrojan.Mint.Jamg.C (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanDownloader.Bandit.ae
WebrootW32.Adware.Installcore
AviraHEUR/AGEN.1106537
eGambitUnsafe.AI_Score_94%
Antiy-AVLTrojan/Generic.ASMalwS.2882AAF
MicrosoftPWS:Win32/Stealer.N!bit
GDataWin32.Trojan-Ransom.GandCrab.U
AhnLab-V3Trojan/Win32.Vigorf.R239106
Acronissuspicious
McAfeePacked-FLX!2CEED258336F
MAXmalware (ai score=85)
VBA32Trojan.Propagate
MalwarebytesTrojan.MalPack.GS
PandaTrj/Genetic.gen
RisingTrojan.Generic@ML.100 (RDML:pSN5SQngZDtxuHLlhUrcdQ)
YandexTrojan.GenAsa!R3rWA+MeUIk
IkarusTrojan-Ransom.Sodinokibi
FortinetW32/Kryptik.GMSM!tr
AVGFileRepMetagen [Malware]
Paloaltogeneric.ml

How to remove PWS:Win32/Stealer.N!bit?

PWS:Win32/Stealer.N!bit removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment