Trojan

How to remove “Trojan-PSW.Win32.Stealer.wqz”?

Malware Removal

The Trojan-PSW.Win32.Stealer.wqz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-PSW.Win32.Stealer.wqz virus can do?

  • Presents an Authenticode digital signature
  • Dynamic (imported) function loading detected
  • Network activity detected but not expressed in API logs

Related domains:

wpad.local-net

How to determine Trojan-PSW.Win32.Stealer.wqz?


File Info:

name: D77854C4A5D326178373.mlw
path: /opt/CAPEv2/storage/binaries/9e84e1997b3f4ed17a31e777f0862242ae70709a77d28d0e64333a90131ac82c
crc32: 4E3DD9A3
md5: d77854c4a5d326178373e79140347f56
sha1: 39fb59e5737ff0606c09d3317301112d6e6fe527
sha256: 9e84e1997b3f4ed17a31e777f0862242ae70709a77d28d0e64333a90131ac82c
sha512: 6b269606312558de483b804a37228e5b87bf55a930ffc085de423015b72381d24a65dd6a09f45dd54e5c27eff8d38f8d0aaf0d46b3fbceea8d692766ff538076
ssdeep: 24576:YuJQXq0S+K7VQy6yXiJC0ABKPamoLi+t9RQAPF5Ehl3qrr+nUs0S+K7VQy6yXiJg:DJQXq0S+K7VQy6yXiJC0ABKXii+t9RQN
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1CF254A45A6B8C583C37803BEB073466173614DD6D434C79B38EEBCBA7AA2703295725E
sha3_384: 5f21a6a50f9d1616fa80059590fb3e5b5da7d1293b9077b0e5f9bca3659f9342d4bc373ab58962fc6721c0f83cb0eb75
ep_bytes: ff25b47c4d000000000000000000887c
timestamp: 2021-11-18 16:59:24

Version Info:

0: [No Data]

Trojan-PSW.Win32.Stealer.wqz also known as:

DrWebAdware.DownwareNET.3
MicroWorld-eScanTrojan.GenericKD.38083665
FireEyeTrojan.GenericKD.38083665
CAT-QuickHealTrojanPWS.Stealer
ALYacTrojan.GenericKD.38083665
ZillyaTrojan.Stealer.Win32.19399
K7GWUnwanted-Program ( 00587ece1 )
K7AntiVirusUnwanted-Program ( 00587ece1 )
CyrenW32/MSIL_Kryptik.GAT.gen!Eldorado
ESET-NOD32a variant of MSIL/DotSetupIo.A potentially unwanted
TrendMicro-HouseCallTROJ_GEN.R002H0CKO21
KasperskyTrojan-PSW.Win32.Stealer.wqz
BitDefenderTrojan.GenericKD.38083665
Ad-AwareTrojan.GenericKD.38083665
SophosGeneric PUA DJ (PUA)
McAfee-GW-EditionArtemis
EmsisoftTrojan.GenericKD.38083665 (B)
GDataTrojan.GenericKD.38083665
JiangminTrojan.PSW.Stealer.yt
WebrootW32.Adware.Gen
MAXmalware (ai score=99)
KingsoftWin32.PSWTroj.Stealer.w.(kcloud)
ArcabitTrojan.Generic.D2451C51
ViRobotTrojan.Win32.Z.Dotsetupio.1038016
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
McAfeeArtemis!D77854C4A5D3
VBA32Malware-Cryptor.MSIL.AgentTesla.Heur
MalwarebytesPUP.Optional.DotSetupIo.BundleInstaller
FortinetAdware/DotSetupIo
PandaTrj/CI.A

How to remove Trojan-PSW.Win32.Stealer.wqz?

Trojan-PSW.Win32.Stealer.wqz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment