Malware

PWS:MSIL/StormKitty.GA!MTB removal

Malware Removal

The PWS:MSIL/StormKitty.GA!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PWS:MSIL/StormKitty.GA!MTB virus can do?

  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine PWS:MSIL/StormKitty.GA!MTB?


File Info:

crc32: B357AFF8
md5: ac2b7f66f2c5fe32220626b45fb90626
name: AC2B7F66F2C5FE32220626B45FB90626.mlw
sha1: 3e31f84b6555539365f3c42403fdc73d8532d7d7
sha256: 6ea4808f0889b9dc62f93e537ddbec6f3e35dd7b5be2a3e75c4ef1a5cd5d9256
sha512: 60034a490a976c7dd0e41a4eb8d1ce69eeeb10490f605b781c6c2c209b135a9157ff0fbed7bbb8131eb37b851d714bac06a2730319e4814b2520ab221ff3ef52
ssdeep: 3072:KvE6ITzqgWRu3PtaMbC5Wyn+KmVSj4Dm7:9xTZYoPtjbY
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2021
Assembly Version: 1.0.0.0
InternalName: Trinity Client.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: Trinity Client
ProductVersion: 1.0.0.0
FileDescription: Trinity Client
OriginalFilename: Trinity Client.exe

PWS:MSIL/StormKitty.GA!MTB also known as:

K7AntiVirusTrojan ( 0057a20e1 )
Elasticmalicious (high confidence)
DrWebTrojan.PWS.StealerNET.74
CynetMalicious (score: 100)
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
ALYacGen:Variant.Bulz.424736
SangforTrojan.Win32.Save.a
BitDefenderGen:Variant.Bulz.424736
K7GWTrojan ( 0057a20e1 )
Cybereasonmalicious.b65555
ESET-NOD32a variant of MSIL/PSW.Agent.RXP
APEXMalicious
MicroWorld-eScanGen:Variant.Bulz.424736
Ad-AwareGen:Variant.Bulz.424736
BitDefenderThetaGen:NN.ZemsilF.34722.gm0@aq7b4Ld
McAfee-GW-EditionFareit-FWC!AC2B7F66F2C5
FireEyeGeneric.mg.ac2b7f66f2c5fe32
EmsisoftGen:Variant.Bulz.424736 (B)
SentinelOneStatic AI – Malicious PE
MicrosoftPWS:MSIL/StormKitty.GA!MTB
GridinsoftTrojan.Win32.Agent.sd!ni
ArcabitTrojan.Bulz.D67B20
GDataMSIL.Trojan-Stealer.DataStealer.B
McAfeeFareit-FWC!AC2B7F66F2C5
MAXmalware (ai score=88)
MalwarebytesSpyware.TrinityStealer
RisingStealer.Agent!1.D483 (CLASSIC)
IkarusTrojan.MSIL.Spy
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Bulz.82555!tr

How to remove PWS:MSIL/StormKitty.GA!MTB?

PWS:MSIL/StormKitty.GA!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment