Malware

About “Generic.DataStealer.1.84EC81B2” infection

Malware Removal

The Generic.DataStealer.1.84EC81B2 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.DataStealer.1.84EC81B2 virus can do?

  • Authenticode signature is invalid
  • CAPE detected the Caliber malware family
  • Binary compilation timestomping detected

How to determine Generic.DataStealer.1.84EC81B2?


File Info:

name: 037726F7E9D1FC591DC6.mlw
path: /opt/CAPEv2/storage/binaries/5fb4d4f2a4e0da7dcebbdafcd95da2749a0b0787d62f984508b9a645bcc47367
crc32: 6C93BCF4
md5: 037726f7e9d1fc591dc681bee2c610ed
sha1: 58811126b5c8b40ffa4ea7925c1e5f292a4eb773
sha256: 5fb4d4f2a4e0da7dcebbdafcd95da2749a0b0787d62f984508b9a645bcc47367
sha512: 4c5b12c150a1e5187368feb35e1db16a243c35176178a5f07237d030156dabd080c894ddbadf8e40ac6848041f5953b3d505c7f243468e6ed0aef108f48d497c
ssdeep: 6144:+f+BLtABPDM5pPTgxWGomsXSb6WtafTy8lI1D0dD9:B57hmsXS6Yx1DG9
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19E544C0027EC8B56E2FF47B9E4B01261C3B1B466B83EDB4E6C4461DE2923790D955BB3
sha3_384: baf2d62eb2693021eb365b1fbbb2425fb05ac9930e317827aa729fbbf158eaf9cefbfbc585e93eff85e301fe86059a26
ep_bytes: ff250020400000000000101112000807
timestamp: 2041-10-20 19:21:48

Version Info:

Translation: 0x0000 0x04b0
Comments: 44 CALIBER
CompanyName: 44 CALIBER
FileDescription: 44 CALIBER
FileVersion: 1.6.2.0
InternalName: Insidious.exe
LegalCopyright: FuckTheSystem Copyright © 2021
LegalTrademarks:
OriginalFilename: Insidious.exe
ProductName: 44 CALIBER
ProductVersion: 1.6.2.0
Assembly Version: 1.6.2.0

Generic.DataStealer.1.84EC81B2 also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.Win32.Stealer.12!c
MicroWorld-eScanGeneric.DataStealer.1.84EC81B2
ClamAVWin.Packed.Datastealer-9856291-0
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
SkyhighBehavesLike.Win32.Generic.dm
McAfeeA310Logger!037726F7E9D1
MalwarebytesCoinStealer.Spyware.Stealer.DDS
ZillyaTrojan.CoinStealer.Win32.3964
SangforTrojan.Win32.Save.a
K7AntiVirusPassword-Stealer ( 005282e41 )
AlibabaTrojanPSW:MSIL/Stealgen.e5aec554
K7GWPassword-Stealer ( 005282e41 )
Cybereasonmalicious.6b5c8b
ArcabitGeneric.DataStealer.1.84EC81B2
VirITTrojan.Win32.GenusT.DNNN
SymantecInfostealer.Calibous
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/PSW.CoinStealer.CC
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-PSW.MSIL.Stealer.gen
BitDefenderGeneric.DataStealer.1.84EC81B2
NANO-AntivirusTrojan.Win32.Stealer.kezvmk
SUPERAntiSpywareTrojan.Agent/Gen-Stealer
AvastWin32:MalwareX-gen [Trj]
TencentTrojan-Spy.Win32.Stealer.16000599
SophosTroj/Steal-CJF
F-SecureHeuristic.HEUR/AGEN.1307083
DrWebTrojan.PWS.StealerNET.76
VIPREGeneric.DataStealer.1.84EC81B2
TrendMicroTROJ_GEN.R002C0DL823
EmsisoftTrojan-PSW.Agent (A)
IkarusTrojan.MSIL.PSW
GoogleDetected
AviraHEUR/AGEN.1307083
MicrosoftPWS:MSIL/Stealgen.GA!MTB
ZoneAlarmHEUR:Trojan-PSW.MSIL.Stealer.gen
GDataMSIL.Trojan-Stealer.CaliberStealer.B
VaristW32/CoinMiner.FA.gen!Eldorado
AhnLab-V3Infostealer/Win.CALIBER.R513735
BitDefenderThetaGen:NN.ZemsilF.36680.rm0@a8nHcXd
MAXmalware (ai score=83)
VBA32Trojan.MSIL.InfoStealer.gen.D
Cylanceunsafe
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0DL823
RisingStealer.Agent!1.D483 (CLASSIC)
YandexTrojan.PWS.CoinStealer!Zqjmg69YMyo
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.RXP!tr.pws
AVGWin32:MalwareX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Generic.DataStealer.1.84EC81B2?

Generic.DataStealer.1.84EC81B2 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment