Backdoor

Backdoor:Win32/Stealer.A!MSR removal tips

Malware Removal

The Backdoor:Win32/Stealer.A!MSR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor:Win32/Stealer.A!MSR virus can do?

  • Presents an Authenticode digital signature
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Backdoor:Win32/Stealer.A!MSR?


File Info:

crc32: 520B6B0F
md5: 48971e0e71300c99bb585d328b08bc88
name: 48971E0E71300C99BB585D328B08BC88.mlw
sha1: ec8d7264953b5e9e416b7e8483954d9907278f2f
sha256: 9bf8e8ac82b8f7c3707eb12e77f94cd0e06a972658610d136993235cbfa53641
sha512: 6a664cd56e2201237bb24c148f39db6878e7cb6bb507290144f4cea327989535dbea64db11de398eee822aae56e873126dc95e2abf73642070f5f15c61d9eb19
ssdeep: 12288:VhOHEwPzMEoJ1BpfYYPmrv3l1dxs6GWRGuGTi2euRBFXTnn8HPIRlxhD44ENrYAt:zOHEwPzMEoJ1BpfYYPmrv3l1dxs6GWRz
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Backdoor:Win32/Stealer.A!MSR also known as:

Elasticmalicious (high confidence)
DrWebBackDoor.Siggen2.2987
MicroWorld-eScanGen:Variant.Razy.567005
ALYacTrojan.Agent.609008L
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
K7AntiVirusTrojan ( 005597f41 )
BitDefenderGen:Variant.Razy.567005
K7GWTrojan ( 005597f41 )
Cybereasonmalicious.e71300
BitDefenderThetaGen:NN.ZexaF.34574.LuY@aeDyRCl
SymantecTrojan Horse
AvastWin32:Trojan-gen
KasperskyBackdoor.Win32.Agent.mytqqe
AlibabaBackdoor:Win32/NukeSped.9576dfe5
NANO-AntivirusTrojan.Win32.Crypted.gczdoi
ViRobotTrojan.Win32.S.Agent.609008
RisingBackdoor.Agent!8.C5D (CLOUD)
Ad-AwareGen:Variant.Razy.567005
SophosMal/Generic-R + Troj/APosT-L
ComodoMalware@#2ng5tn5nef8dw
F-SecureTrojan.TR/Agent.lnumk
ZillyaTrojan.NukeSped.Win32.182
TrendMicroBackdoor.Win32.APPLEJEUS.ZLGJ
McAfee-GW-EditionArtemis!Trojan
FireEyeGen:Variant.Razy.567005
EmsisoftMalCert.A (A)
JiangminBackdoor.Agent.gdq
MaxSecureTrojan.Malware.1728101.susgen
AviraTR/Agent.lnumk
Antiy-AVLTrojan[Backdoor]/Win32.Stealer
MicrosoftBackdoor:Win32/Stealer.A!MSR
ArcabitTrojan.Razy.D8A6DD
ZoneAlarmBackdoor.Win32.Agent.mytqqe
GDataGen:Variant.Razy.567005
CynetMalicious (score: 85)
AhnLab-V3Trojan/Win32.Stealer.C3518629
McAfeeArtemis!48971E0E7130
MAXmalware (ai score=100)
VBA32Backdoor.Agent
MalwarebytesTrojan.NukeSped
PandaTrj/CI.A
ESET-NOD32a variant of Win32/NukeSped.GN
TrendMicro-HouseCallBackdoor.Win32.APPLEJEUS.ZLGJ
TencentWin32.Backdoor.Agent.Pegd
IkarusTrojan.Win32.Agent
eGambitUnsafe.AI_Score_98%
FortinetW32/Agent.ABDP!tr.bdr
WebrootW32.Malware.Gen
AVGWin32:Trojan-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Win32/Backdoor.10c

How to remove Backdoor:Win32/Stealer.A!MSR?

Backdoor:Win32/Stealer.A!MSR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment