Trojan

Trojan:Win32/Stealer.A!MTB information

Malware Removal

The Trojan:Win32/Stealer.A!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Stealer.A!MTB virus can do?

  • Sample contains Overlay data
  • Performs HTTP requests potentially not found in PCAP.
  • Authenticode signature is invalid
  • Attempts to modify proxy settings

How to determine Trojan:Win32/Stealer.A!MTB?


File Info:

name: CE35583F69531859F59D.mlw
path: /opt/CAPEv2/storage/binaries/e353b91fbdcd8a4f640b34852fef30f92981b4e78cbb7cc1cd4a9f6c818b19d9
crc32: 22081DED
md5: ce35583f69531859f59d7e47d4c13d59
sha1: 6aace416822bf781b764e634b220a9c067cbeff9
sha256: e353b91fbdcd8a4f640b34852fef30f92981b4e78cbb7cc1cd4a9f6c818b19d9
sha512: f1a29bcaa3d14e9eb03e3afec545753446d03853b4e0268973c3535251430acdb9472dcb5f9fc7d0b1de08f8877324d808d1aaa0ba322263f8b888defe34319c
ssdeep: 3072:/3A8KZSuCoIO/pLS0CvFOdVBf2FwUZWUE9wpDV+hb5sPmZzPvaKVJ:/kZSiO0pBE+55CKVJ
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E9E38E00F2C2C0B1E5F3147915A0A251DF3DF9344AFD5EAF5BD50FAE4F211A0E629A6A
sha3_384: 53514629cb8360ebcf2a99104c1d41df4b4dc34e9636d0c7033b0497833eda7fe689450797ed737a4bb1e5d187c9aa40
ep_bytes: e8a3020000e97afeffff558bec8b4508
timestamp: 2023-08-23 12:31:53

Version Info:

0: [No Data]

Trojan:Win32/Stealer.A!MTB also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Stealer.37347
MicroWorld-eScanTrojan.GenericKDZ.102547
FireEyeGeneric.mg.ce35583f69531859
CAT-QuickHealTrojanPWS.Stealerc.S30657853
Cylanceunsafe
K7AntiVirusTrojan-Downloader ( 0056a18b1 )
K7GWTrojan-Downloader ( 0056a18b1 )
Cybereasonmalicious.6822bf
BitDefenderThetaGen:NN.ZexaF.36350.iuX@ae1F5Ehi
CyrenW32/Agent.GZG.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/TrojanDownloader.Agent_AGen.DZ
AvastWin32:TrojanX-gen [Trj]
KasperskyHEUR:Trojan-PSW.Win32.Stealerc.gen
BitDefenderTrojan.GenericKDZ.102547
NANO-AntivirusTrojan.Win32.Stealerc.jyorhm
EmsisoftTrojan.GenericKDZ.102547 (B)
VIPRETrojan.GenericKDZ.102547
Trapminesuspicious.low.ml.score
GDataWin32.Trojan.PSE.LHGEKD
GoogleDetected
Antiy-AVLTrojan/Win32.Casdet
ZoneAlarmHEUR:Trojan-PSW.Win32.Stealerc.gen
MicrosoftTrojan:Win32/Stealer.A!MTB
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.TrojanX-gen.C5461464
VBA32BScope.TrojanPSW.Stealerc
MAXmalware (ai score=87)
MalwarebytesTrojan.Downloader
PandaTrj/GdSda.A
APEXMalicious
RisingStealer.Stealerc!8.17BE0 (TFE:5:9AmSB0pL6gH)
FortinetW32/Kryptik.0A1A!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:Win32/Stealer.A!MTB?

Trojan:Win32/Stealer.A!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment