Trojan

Trojan:Win32/Stealerc.NS!MTB removal

Malware Removal

The Trojan:Win32/Stealerc.NS!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Stealerc.NS!MTB virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Trojan:Win32/Stealerc.NS!MTB?


File Info:

name: A3A0D237EAEAAFAA34E1.mlw
path: /opt/CAPEv2/storage/binaries/e86c607300d6fbf0a252ed4a3bffabf46b70761e41e97110a765c3ffc9c06776
crc32: B7D7D2D0
md5: a3a0d237eaeaafaa34e1f179273ab81b
sha1: 5b4f63dae3945b0eff26c8b126bad762dccf0bd9
sha256: e86c607300d6fbf0a252ed4a3bffabf46b70761e41e97110a765c3ffc9c06776
sha512: d4df86e9bdbb620fa506f2ed71f0bc8f8aeb70dfdd9e4802f18abc398fcd9b481c6c18f9b96ec50a87e48429eac1044dac155126627e4f2af391725fe5e45c46
ssdeep: 24576:GmYmtww5o7a0dGD5/yDZIiKRo2beTGXA:f5o7a0daADvG
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1DD359E327981D1F6EEE320B7C3ECB62A466DE0B4071515CF06D856EED7646C13B32A86
sha3_384: 4cb733922d1cd47f6359ebfe98b3123e16e4bfbcee48427563e4095c77b0c6ba7cc34c44d5ff0473783e04ad7375f9d2
ep_bytes: e9f3ff0300e9a76e0500e970860400e9
timestamp: 2023-10-30 18:02:41

Version Info:

0: [No Data]

Trojan:Win32/Stealerc.NS!MTB also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanGen:Variant.Mikey.158101
FireEyeGen:Variant.Mikey.158101
SkyhighBehavesLike.Win32.Generic.th
McAfeeArtemis!A3A0D237EAEA
MalwarebytesMalware.AI.2767843573
K7AntiVirusTrojan ( 005aaa221 )
BitDefenderGen:Variant.Mikey.158101
K7GWTrojan ( 005aaa221 )
CrowdStrikewin/malicious_confidence_70% (D)
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.HUYH
CynetMalicious (score: 100)
APEXMalicious
ClamAVWin.Packed.Pwsx-10012424-0
KasperskyVHO:Trojan-PSW.Win32.Stealerc.gen
RisingTrojan.Kryptik!8.8 (TFE:5:xOYJ75XQoOP)
DrWebTrojan.Inject4.63558
EmsisoftGen:Variant.Mikey.158101 (B)
IkarusTrojan.Win32.Redline
VaristW32/Kryptik.KNN.gen!Eldorado
Antiy-AVLTrojan/Win32.GenKryptik
MicrosoftTrojan:Win32/Stealerc.NS!MTB
ArcabitTrojan.Mikey.D26995
ZoneAlarmVHO:Trojan-PSW.Win32.Stealerc.gen
GDataGen:Variant.Mikey.158101
GoogleDetected
BitDefenderThetaGen:NN.ZexaF.36792.dHW@au!BFql
MAXmalware (ai score=82)
DeepInstinctMALICIOUS
SentinelOneStatic AI – Malicious PE
FortinetW32/Kryptik.HUYH!tr

How to remove Trojan:Win32/Stealerc.NS!MTB?

Trojan:Win32/Stealerc.NS!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment