Malware

How to remove “PWS:MSIL/Stimilina.C”?

Malware Removal

The PWS:MSIL/Stimilina.C is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PWS:MSIL/Stimilina.C virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • The binary likely contains encrypted or compressed data.
  • Collects information to fingerprint the system

Related domains:

sdjfklsdf2.win

How to determine PWS:MSIL/Stimilina.C?


File Info:

crc32: 06E88809
md5: 9d927e4f6ec4c5f6b2a0837fe1bfaaff
name: 9D927E4F6EC4C5F6B2A0837FE1BFAAFF.mlw
sha1: 07ae57226af4e8c6480e977c103f4eb9e473aea9
sha256: d60eb62bc9214dd96f53cefc22f618272506d3cee7acaefcd209c5a8b9aa4b06
sha512: 1f314ca3b9124fe4402d4f10de336f0594325257ffd46a8b86db62520cae5e153f7629aa6f4c04f87334648a1cb1e37921f5075a14fd4844c2da9dac1234ed1e
ssdeep: 12288:n2oSPez+Y8QYa/UoFgoA7sJe6/UYLTPg7GgIs8UNayK01bMYxdvT3lxRk2:o2zzvl/UoFgoAGNUOPg7GvOQYbMSd+2
type: PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows

Version Info:

LegalCopyright: Copyright xa9. All rights reserved.
InternalName: Panramainitialize
CompanyName: Devkin Ladislav
FileDescription: Unionized Imposes Encoders Mainline
LegalTrademarks: Copyright xa9. All rights reserved.
Comments: Unionized Imposes Encoders Mainline
ProductName: Panramainitialize
Languages: English
ProductVersion: 7.3.6.7
PrivateBuild: 7.3.6.7
OriginalFilename: Panramainitialize
Translation: 0x0409 0x04b0

PWS:MSIL/Stimilina.C also known as:

K7AntiVirusPassword-Stealer ( 0050cad01 )
LionicTrojan.Win32.SpyEyes.4!c
CynetMalicious (score: 99)
ALYacTrojan.GenericKD.43666309
CylanceUnsafe
ZillyaTrojan.SpyEyes.Win32.13847
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojanSpy:Win32/SpyEyes.1ddeab13
K7GWPassword-Stealer ( 0050cad01 )
Cybereasonmalicious.f6ec4c
ESET-NOD32Win32/PSW.Delf.ORF
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Spy.Win32.SpyEyes.bczy
BitDefenderTrojan.GenericKD.43666309
NANO-AntivirusTrojan.Win32.SpyEyes.ewbaqk
MicroWorld-eScanTrojan.GenericKD.43666309
TencentWin32.Trojan-spy.Spyeyes.Hwwg
Ad-AwareTrojan.GenericKD.43666309
SophosMal/Generic-S
ComodoMalware@#v4yv18aqtbz0
BitDefenderThetaGen:NN.ZexaF.34170.Pq0@aqyKl2hi
VIPRETrojan.Win32.Generic!BT
FireEyeGeneric.mg.9d927e4f6ec4c5f6
EmsisoftTrojan.GenericKD.43666309 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanSpy.SpyEyes.nes
WebrootInfostealer.Rultazo.Gen
AviraHEUR/AGEN.1143424
MicrosoftPWS:MSIL/Stimilina.C
GDataTrojan.GenericKD.43666309
AhnLab-V3Win-Trojan/Sagecrypt.Gen
Acronissuspicious
McAfeeArtemis!9D927E4F6EC4
MAXmalware (ai score=97)
VBA32BScope.Trojan-Ransom.Foreign
MalwarebytesMachineLearning/Anomalous.100%
PandaTrj/CI.A
YandexTrojanSpy.SpyEyes!DWLTXZod71Y
IkarusTrojan-Ransom.GandCrab
FortinetW32/GenKryptik.CIHO!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove PWS:MSIL/Stimilina.C?

PWS:MSIL/Stimilina.C removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment