Spy

How to remove “Spyware.BitCoinStealer”?

Malware Removal

The Spyware.BitCoinStealer is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Spyware.BitCoinStealer virus can do?

  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz

How to determine Spyware.BitCoinStealer?


File Info:

crc32: D9684C78
md5: 4bb8edd13ff7c28b349af03a6c9c67c8
name: 2.exe
sha1: 45be21fd9760f3655ee339df16e3fe3b95cd65cf
sha256: 2f579f37924addfd2a32f6376063d8cd562063c4158d86661abfcea40ddf25e5
sha512: 4370c15799be89023470203ee857d73d02fc2e17bebbeef0c59e19202e566b5bac1b3f8e35481a0e1316346d55f5a678de434e997f7f6c3babe4c80ed7a9f251
ssdeep: 1536:6+R6wUcknw0Z3vlPphLVGH2rHJJ+aviD/z7aQ9Nb7a2Itcr4w7j:utw0fxhhFrHJJILvNb7aVcN
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: NoFile.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: NoFile.exe

Spyware.BitCoinStealer also known as:

MicroWorld-eScanGen:Heur.MSIL.Bladabindi.1
CAT-QuickHealTrojan.IGENERIC
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
K7AntiVirusPassword-Stealer ( 00528b8d1 )
K7GWPassword-Stealer ( 00528b8d1 )
Cybereasonmalicious.13ff7c
Invinceaheuristic
NANO-AntivirusTrojan.Win32.Androm.fcgjip
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/PSW.CoinStealer.BO
TrendMicro-HouseCallTROJ_GEN.R011C0WEH18
GDataGen:Heur.MSIL.Bladabindi.1
KasperskyBackdoor.Win32.Androm.pvuh
BitDefenderGen:Heur.MSIL.Bladabindi.1
AvastWin32:Malware-gen
TencentWin32.Backdoor.Androm.Pgdk
Ad-AwareGen:Heur.MSIL.Bladabindi.1
SophosMal/Generic-S
Comodo.UnclassifiedMalware
F-SecureGen:Heur.MSIL.Bladabindi.1
TrendMicroTROJ_GEN.R011C0WEH18
McAfee-GW-EditionRDN/Generic PWS.y
EmsisoftGen:Heur.MSIL.Bladabindi.1 (B)
SentinelOnestatic engine – malicious
CyrenW32/Trojan.FBKN-0683
WebrootW32.Malware.Gen
AviraTR/PSW.CoinStealer.lsswq
Antiy-AVLTrojan/Win32.TSGeneric
Endgamemalicious (high confidence)
ArcabitTrojan.MSIL.Bladabindi.1
AegisLabUds.Dangerousobject.Multi!c
ZoneAlarmBackdoor.Win32.Androm.pvuh
AhnLab-V3Trojan/Win32.Bladabindi.C2545906
McAfeeRDN/Generic PWS.y
AVwareTrojan.Win32.Generic!BT
MAXmalware (ai score=99)
MalwarebytesSpyware.BitCoinStealer
RisingBackdoor.Androm!8.113 (CLOUD)
YandexBackdoor.Androm!LR8n+q2BrTo
IkarusTrojan.MSIL.PSW
FortinetMSIL/CoinStealer.BO!tr.pws
AVGWin32:Malware-gen
PandaTrj/GdSda.A
CrowdStrikemalicious_confidence_100% (W)

How to remove Spyware.BitCoinStealer?

Spyware.BitCoinStealer removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment