Trojan

Trojan:Win32/Stealerc.NS!MTB information

Malware Removal

The Trojan:Win32/Stealerc.NS!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Stealerc.NS!MTB virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine Trojan:Win32/Stealerc.NS!MTB?


File Info:

name: E0A05B70749C45C04FEB.mlw
path: /opt/CAPEv2/storage/binaries/2a508302dc596b2861854c5d09b8237c4d645ebec065bcd36f56d0ece1437dbd
crc32: DEA63AB8
md5: e0a05b70749c45c04feb3d0241d39d6f
sha1: b7839e83baf124ce93d075814d3ef24b71b3888e
sha256: 2a508302dc596b2861854c5d09b8237c4d645ebec065bcd36f56d0ece1437dbd
sha512: 3233f2e3f97a8d90ea8b5858754a437852de6848f48531672da7df3eab668cdc8910db3a2919b8aac9bea0cdd20e0538661a7f1204c52732549b50a427ad7284
ssdeep: 12288:e/68kK9wAYmtww5o7a0dYbNGK+8/yiEmIZH1Pfrmqgbu+C8CFPi094ZlL:e18mtww5o7a0dmr5/yTZ16oFi09k
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F8359E20F9C191B6EDE320B682DDB67A427DD0B4072515CF16DC37EEDB642C26B32686
sha3_384: 2dbee67a51ef00ecd7ab1f2713bc8b978b3bdc854f42b9d013363a8e09e03535b6821452b05f819377e1b61453d7c294
ep_bytes: e9f3ff0300e9a76e0500e970860400e9
timestamp: 2023-10-31 03:40:46

Version Info:

0: [No Data]

Trojan:Win32/Stealerc.NS!MTB also known as:

BkavW32.AIDetectMalware
MicroWorld-eScanTrojan.GenericKDZ.103873
FireEyeTrojan.GenericKDZ.103873
SkyhighBehavesLike.Win32.Generic.th
K7AntiVirusTrojan ( 005aaa221 )
BitDefenderTrojan.GenericKDZ.103873
K7GWTrojan ( 005aaa221 )
CrowdStrikewin/malicious_confidence_70% (D)
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.HUYH
APEXMalicious
ClamAVWin.Packed.Pwsx-10012424-0
KasperskyHEUR:Backdoor.Win32.Mokes.gen
RisingTrojan.Kryptik!8.8 (TFE:5:xOYJ75XQoOP)
DrWebTrojan.Inject4.63558
EmsisoftTrojan.GenericKDZ.103873 (B)
SentinelOneStatic AI – Malicious PE
MAXmalware (ai score=85)
GoogleDetected
VaristW32/Kryptik.KNN.gen!Eldorado
Antiy-AVLTrojan/Win32.GenKryptik
MicrosoftTrojan:Win32/Stealerc.NS!MTB
ArcabitTrojan.Mikey.D26995
ZoneAlarmHEUR:Backdoor.Win32.Mokes.gen
GDataTrojan.GenericKDZ.103873
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.RedLine.R619129
DeepInstinctMALICIOUS
MalwarebytesMalware.AI.2767843573
PandaTrj/GdSda.A
IkarusTrojan.Win32.Redline
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Kryptik.HUYH!tr
BitDefenderThetaGen:NN.ZexaF.36792.dHW@aOf9Nlg
AVGWin32:PWSX-gen [Trj]
AvastWin32:PWSX-gen [Trj]

How to remove Trojan:Win32/Stealerc.NS!MTB?

Trojan:Win32/Stealerc.NS!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment