Malware

Generic.MSIL.PasswordStealerA.7FAD9970 malicious file

Malware Removal

The Generic.MSIL.PasswordStealerA.7FAD9970 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.MSIL.PasswordStealerA.7FAD9970 virus can do?

  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Generic.MSIL.PasswordStealerA.7FAD9970?


File Info:

crc32: 54AC5CDD
md5: 41bb874f7fcd9f510c2f732550ebc21e
name: 41BB874F7FCD9F510C2F732550EBC21E.mlw
sha1: e60a0bcf30dd87ddf079f9dc5dc2773358f43fa5
sha256: 5a06fc050c72cc1155f996e5ce2528f0a35d02339e3f507721bb41682730f95b
sha512: 5d2e6ecf7363a7be3047ab1401eab485e685ed7376bc3e4dd02e07242faa79bc3c89ad95c3130b3cd32a95600caaf1d907226c5711c54c6983e85143bb2e6332
ssdeep: 12288:NTEgdfYnxUnmYMJ4xywrNp55abowcdgGkW:uUw0UkywrNpTUVcdgGkW
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 MaxXor 2020
Assembly Version: 1.4.0.0
InternalName: Client.exe
FileVersion: 1.4.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: Quasar
ProductVersion: 1.4.0
FileDescription: Quasar Client
OriginalFilename: Client.exe

Generic.MSIL.PasswordStealerA.7FAD9970 also known as:

K7AntiVirusTrojan ( 0056b6611 )
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop13.10660
CynetMalicious (score: 100)
CAT-QuickHealTrojan.MsilFC.S15413537
ALYacGeneric.MSIL.PasswordStealerA.7FAD9970
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
K7GWTrojan ( 005690671 )
Cybereasonmalicious.f7fcd9
CyrenW32/MSIL_Kryptik.DOD.gen!Eldorado
ESET-NOD32a variant of MSIL/Agent.BPH
APEXMalicious
AvastWin32:RATX-gen [Trj]
ClamAVWin.Packed.Downeks-6898097-0
KasperskyHEUR:Trojan.MSIL.Quasar.gen
BitDefenderGeneric.MSIL.PasswordStealerA.7FAD9970
NANO-AntivirusTrojan.Win32.Quasar.hwomnz
MicroWorld-eScanGeneric.MSIL.PasswordStealerA.7FAD9970
Ad-AwareGeneric.MSIL.PasswordStealerA.7FAD9970
SophosML/PE-A
F-SecureHeuristic.HEUR/AGEN.1135947
BitDefenderThetaGen:NN.ZemsilF.34758.Nm0@aWHIR6
TrendMicroTSPY_TINCLEX.SM1
McAfee-GW-EditionBehavesLike.Win32.Generic.jh
FireEyeGeneric.mg.41bb874f7fcd9f51
EmsisoftTrojan.Agent (A)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.MSIL.oyqd
WebrootW32.Trojan.Quasar
AviraHEUR/AGEN.1135947
eGambitUnsafe.AI_Score_65%
Antiy-AVLTrojan/Generic.ASMalwS.3090D14
MicrosoftBackdoor:MSIL/Quasar.GG!MTB
GridinsoftSpy.Win32.Keylogger.dd!n
ArcabitGeneric.MSIL.PasswordStealerA.7FAD9970
ZoneAlarmHEUR:Trojan.MSIL.Quasar.gen
GDataMSIL.Backdoor.Quasar.B
AhnLab-V3Backdoor/Win32.QuasarRAT.R341693
McAfeeGenericRXKX-GN!41BB874F7FCD
MAXmalware (ai score=82)
VBA32TScope.Trojan.MSIL
MalwarebytesBackdoor.Quasar
TrendMicro-HouseCallTSPY_TINCLEX.SM1
IkarusBackdoor.Win32.Xiclog
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.BPH!tr
AVGWin32:RATX-gen [Trj]

How to remove Generic.MSIL.PasswordStealerA.7FAD9970?

Generic.MSIL.PasswordStealerA.7FAD9970 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment