Malware

Should I remove “Generic.DataStealer.1.68AD3D38”?

Malware Removal

The Generic.DataStealer.1.68AD3D38 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.DataStealer.1.68AD3D38 virus can do?

  • Authenticode signature is invalid
  • CAPE detected the Caliber malware family
  • Binary compilation timestomping detected

How to determine Generic.DataStealer.1.68AD3D38?


File Info:

name: E2E9A6E2407B7AD08967.mlw
path: /opt/CAPEv2/storage/binaries/6179d80b130be567ab5bf42fd70a7fe3d55b628db1bd51525e25d78454b35128
crc32: F3F30FE9
md5: e2e9a6e2407b7ad0896710f620671fe1
sha1: 83a8293ef64af0bbc3f4b5a38498bbca6b3aad7c
sha256: 6179d80b130be567ab5bf42fd70a7fe3d55b628db1bd51525e25d78454b35128
sha512: 39cb3290e46f66303fbd5629a73d6a3a6379dd21f8ff2a4adff62b32d4125af684e10232994ad6672d3ab40f35412b4b098500c9b7c3ae52e6641ef6422588f5
ssdeep: 6144:hf+BLtABPDhctCBY5NtgImduQyIYASlIyD0N8JR:LcjPgImduk5yDRJR
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19B544B0027EC8B56F2FF1BF8E4B0126583B1B566B83EDB8E6D4461ED1923340D955BA3
sha3_384: b99b41c52e24a77ab632ea42583c23a4ed14d11dbc6e828202174458796169ce2dcfa31b27572da414ef7ffb20d55ae6
ep_bytes: ff250020400000000000101112000807
timestamp: 2064-04-29 21:23:02

Version Info:

Translation: 0x0000 0x04b0
Comments: 44 CALIBER
CompanyName: 44 CALIBER
FileDescription: 44 CALIBER
FileVersion: 1.6.2.0
InternalName: Insidious.exe
LegalCopyright: FuckTheSystem Copyright © 2021
LegalTrademarks:
OriginalFilename: Insidious.exe
ProductName: 44 CALIBER
ProductVersion: 1.6.2.0
Assembly Version: 1.6.2.0

Generic.DataStealer.1.68AD3D38 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.DataStealer.1.68AD3D38
ClamAVWin.Packed.Datastealer-9856291-0
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
McAfeeA310Logger!E2E9A6E2407B
SangforTrojan.Win32.Save.a
K7AntiVirusPassword-Stealer ( 005282e41 )
K7GWPassword-Stealer ( 005282e41 )
CrowdStrikewin/malicious_confidence_100% (D)
CyrenW32/CoinMiner.FA.gen!Eldorado
SymantecInfostealer.Calibous
ESET-NOD32a variant of MSIL/PSW.CoinStealer.CC
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-PSW.MSIL.Stealer.gen
BitDefenderGeneric.DataStealer.1.68AD3D38
SUPERAntiSpywareTrojan.Agent/Gen-Stealer
AvastWin32:MalwareX-gen [Trj]
TencentTrojan-Spy.Win32.Stealer.16000599
EmsisoftTrojan-PSW.Agent (A)
F-SecureHeuristic.HEUR/AGEN.1307083
DrWebTrojan.PWS.StealerNET.76
VIPREGeneric.DataStealer.1.68AD3D38
McAfee-GW-EditionA310Logger!E2E9A6E2407B
FireEyeGeneric.mg.e2e9a6e2407b7ad0
SophosTroj/Steal-CJF
SentinelOneStatic AI – Malicious PE
GDataMSIL.Trojan-Stealer.CaliberStealer.B
AviraHEUR/AGEN.1307083
ArcabitGeneric.DataStealer.1.68AD3D38
ZoneAlarmHEUR:Trojan-PSW.MSIL.Stealer.gen
MicrosoftPWS:MSIL/Stealgen.GA!MTB
GoogleDetected
AhnLab-V3Infostealer/Win.CALIBER.R513735
Acronissuspicious
VBA32Trojan.MSIL.InfoStealer.gen.D
ALYacGeneric.DataStealer.1.68AD3D38
MAXmalware (ai score=87)
MalwarebytesCoinStealer.Spyware.Stealer.DDS
RisingStealer.Agent!1.D483 (CLASSIC)
IkarusTrojan.MSIL.PSW
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.RML!tr
BitDefenderThetaGen:NN.ZemsilF.36350.rm0@ayWfOEc
AVGWin32:MalwareX-gen [Trj]
DeepInstinctMALICIOUS

How to remove Generic.DataStealer.1.68AD3D38?

Generic.DataStealer.1.68AD3D38 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment