Spy Trojan

Trojan-Spy.Win32.Stealer.add removal

Malware Removal

The Trojan-Spy.Win32.Stealer.add is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Spy.Win32.Stealer.add virus can do?

  • Executable code extraction
  • Creates RWX memory
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Turkish
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Attempts to modify proxy settings
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan-Spy.Win32.Stealer.add?


File Info:

crc32: F08312DA
md5: e8a80c091c01fde6e94ea6591f4e176b
name: E8A80C091C01FDE6E94EA6591F4E176B.mlw
sha1: a0e42a0d6949c6948811563610a42086cc008cb4
sha256: c3be3b59aab93ee96f5fe19ab6b9c1210b8db8f0ee39e26f725cbd4d46bae632
sha512: 22894b991bb07adc09a93c944c58ffe67cc8d3c914e23d320aa63a39c2abf67b653fdc5c687eb42ae3c200910690b5011b81696a7e907cc6364c7d838a38bde6
ssdeep: 3072:G9nLjLzrebOfRBWD6LoeY2uWwlQWi5fbLX6fCmXbxp2SSy45KKDLEi:EnL/zrxpIDysI0DsHX6fCmXdSmKDLN
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan-Spy.Win32.Stealer.add also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00516fdf1 )
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Stealer.24814
CynetMalicious (score: 100)
ALYacTrojan.Brsecmon.1
CylanceUnsafe
ZillyaTrojan.Stealer.Win32.4697
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojanSpy:Win32/Stealer.aaac0a07
K7GWTrojan ( 00516fdf1 )
Cybereasonmalicious.91c01f
CyrenW32/Kryptik.JU.gen!Eldorado
SymantecPacked.Generic.525
ESET-NOD32a variant of Win32/Kryptik.GLKA
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Spy.Win32.Stealer.add
BitDefenderTrojan.Brsecmon.1
NANO-AntivirusTrojan.Win32.Stealer.fixytf
MicroWorld-eScanTrojan.Brsecmon.1
TencentWin32.Trojan-spy.Stealer.Amce
Ad-AwareTrojan.Brsecmon.1
SophosMal/Generic-R + Mal/GandCrab-G
ComodoMalware@#31lzvz7yh8o16
BitDefenderThetaGen:NN.ZexaF.34058.luW@aGtYL1hO
TrendMicroTrojanSpy.Win32.CLIPBANKER.SMB
McAfee-GW-EditionTrojan-FPST!E8A80C091C01
FireEyeGeneric.mg.e8a80c091c01fde6
EmsisoftTrojan.Brsecmon.1 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanDownloader.ZippyLoader.nt
AviraHEUR/AGEN.1102745
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASCommon.10B
MicrosoftRansom:Win32/Gandcrab.G!MTB
ArcabitTrojan.Brsecmon.1
GDataTrojan.Brsecmon.1
AhnLab-V3Trojan/Win32.Ursnif.R238477
Acronissuspicious
McAfeeTrojan-FPST!E8A80C091C01
MAXmalware (ai score=100)
VBA32BScope.Trojan.Propagate
PandaTrj/Genetic.gen
TrendMicro-HouseCallTrojanSpy.Win32.CLIPBANKER.SMB
RisingTrojan.Kryptik!1.B426 (CLASSIC)
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GLKY!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.GandCrab.HwoCEpsA

How to remove Trojan-Spy.Win32.Stealer.add?

Trojan-Spy.Win32.Stealer.add removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment