Spy

How to remove “Spyware.Stellar”?

Malware Removal

The Spyware.Stellar is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Spyware.Stellar virus can do?

  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Spyware.Stellar?


File Info:

crc32: 084BA890
md5: 50d569a885fffa4deb4fce1954f6cdc2
name: 50D569A885FFFA4DEB4FCE1954F6CDC2.mlw
sha1: 3c7d3f3808ed4398ff02bc1f48c966cd769d0116
sha256: 841afa3180bf77bc79e2287ebdd5780606ae8f4bedbc92762430cc4a8a214942
sha512: fef36e11273f2151ae6105db817fecc07f1d081cb7b2b2952c5d6276e92894927c3df2b23228b9dd3590fd7b679079d48d43f1aa58698c90191cdbaa25a8d630
ssdeep: 12288:OTdVIl1Rr6y2q8r8k4Dx0BWHIN5RAwzbJ2yJidx5zkzZYNZS7W9z9KmClhmpCQv:OTEkhr8jwNT8T5Yg1TmCpUv
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: copyleft 1998-2021 by DON HO
Assembly Version: 0.0.0.0
InternalName: notepad++.exe
FileVersion: 0.0.0.0
CompanyName: Don Ho don.h@free.fr
Comments: Notepad++ :a free (GPL) source code
ProductName: Notepad++
ProductVersion: 0.0.0.0
FileDescription: notepad++
OriginalFilename: notepad++.exe

Spyware.Stellar also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 99)
McAfeeArtemis!50D569A885FF
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaTrojanPSW:MSIL/GenKryptik.818725ae
Cybereasonmalicious.808ed4
CyrenW32/MSIL_Kryptik.CDT.gen!Eldorado
ESET-NOD32a variant of MSIL/GenKryptik.FGGE
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
KasperskyHEUR:Trojan-PSW.MSIL.Stelega.gen
BitDefenderTrojan.GenericKD.46430338
MicroWorld-eScanTrojan.GenericKD.46430338
Ad-AwareTrojan.GenericKD.46430338
SophosML/PE-A
BitDefenderThetaGen:NN.ZemsilF.34722.7m0@ai54l9m
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.50d569a885fffa4d
EmsisoftTrojan.GenericKD.46430338 (B)
SentinelOneStatic AI – Suspicious PE
AviraTR/AD.AgentTesla.kgzxw
KingsoftWin32.PSWTroj.Undef.(kcloud)
MicrosoftTrojan:Win32/AgentTesla!ml
GDataTrojan.GenericKD.46430338
MAXmalware (ai score=86)
MalwarebytesSpyware.Stellar
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.F0D1C00F521
IkarusWin32.SuspectCrc
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/GenKryptik.FGFI!tr
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml

How to remove Spyware.Stellar?

Spyware.Stellar removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment