Malware

Generic.MSIL.PasswordStealerA.2161D90D malicious file

Malware Removal

The Generic.MSIL.PasswordStealerA.2161D90D is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.MSIL.PasswordStealerA.2161D90D virus can do?

  • Network activity detected but not expressed in API logs

How to determine Generic.MSIL.PasswordStealerA.2161D90D?


File Info:

crc32: 7EFA14BC
md5: e8d46db6d17164c1d31ae575ee80e54f
name: test.exe
sha1: a19174f8a95e7b980c362996534b84a53b2fe1ff
sha256: e27e0ce83b156d0288f02c7d6f96305e16929f18de2081cd10fbda4648e797cf
sha512: ca700ca06fe5261bb3bba3a02234f4447bccd2b173540b181ada311bbf1e2898d7362150a06ac1bdf3f95ee940016141dd376e5f274fe719a70e8394c8bcecd7
ssdeep: 6144:316bPXhLApfpyG+Vu5Qetspn+H6bC0TilPLmKNNGcvp1Ai:FmhApt+Sw5SAiBmKNNGcvp1Ai
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright:
Assembly Version: 1.1.0.0
InternalName: xTSR-build.exe
FileVersion: 1.1.0.0
CompanyName: Mr.Alex Corp xa9 2017
LegalTrademarks:
Comments:
ProductName:
ProductVersion: 1.1.0.0
FileDescription:
OriginalFilename: xTSR-build.exe
Translation: 0x0000 0x04b0

Generic.MSIL.PasswordStealerA.2161D90D also known as:

MicroWorld-eScanGeneric.MSIL.PasswordStealerA.2161D90D
CAT-QuickHealTrojan.Generic.FC.1191
McAfeePUP-XEL-WE!E8D46DB6D171
CylanceUnsafe
AegisLabTroj.W32.Agent.mCnJ
K7GWTrojan ( 00521dab1 )
K7AntiVirusTrojan ( 00521dab1 )
ArcabitGeneric.MSIL.PasswordStealerA.2161D90D
TrendMicroTSPY_TINCLEX.SM1
BaiduWin32.Trojan.WisdomEyes.16070401.9500.9856
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Spy.Agent.AES
TrendMicro-HouseCallTSPY_TINCLEX.SM1
ClamAVWin.Trojan.Generic-6295765-0
KasperskyTrojan.MSIL.Agent.foww
BitDefenderGeneric.MSIL.PasswordStealerA.2161D90D
AvastMSIL:Rat-B [Trj]
Ad-AwareGeneric.MSIL.PasswordStealerA.2161D90D
EmsisoftGeneric.MSIL.PasswordStealerA.2161D90D (B)
F-SecureGeneric.MSIL.PasswordStealerA.2161D90D
DrWebTrojan.DownLoader22.22548
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Generic.fh
SophosTroj/Subti-A
IkarusTrojan.MSIL.Spy
JiangminTrojan.Generic.aqcbt
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1013795
MAXmalware (ai score=89)
MicrosoftBackdoor:Win32/Xiclog.A
Endgamemalicious (high confidence)
ZoneAlarmTrojan.MSIL.Agent.foww
GDataGeneric.MSIL.PasswordStealerA.2161D90D
AhnLab-V3Trojan/Win32.Subti.C1758112
ALYacGeneric.MSIL.PasswordStealerA.2161D90D
MalwarebytesTrojan.PasswordStealer
RisingSpyware.Agent!1.B1DD (CLASSIC)
SentinelOnestatic engine – malicious
FortinetMSIL/Agent.AES!tr
AVGMSIL:Rat-B [Trj]
Cybereasonmalicious.6d1716
CrowdStrikemalicious_confidence_100% (D)
Qihoo-360HEUR/QVM03.0.A4A7.Malware.Gen

How to remove Generic.MSIL.PasswordStealerA.2161D90D?

Generic.MSIL.PasswordStealerA.2161D90D removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment