Malware

Generic.MSIL.PasswordStealerA.F1EFE2D6 removal guide

Malware Removal

The Generic.MSIL.PasswordStealerA.F1EFE2D6 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.MSIL.PasswordStealerA.F1EFE2D6 virus can do?

  • Network activity detected but not expressed in API logs

How to determine Generic.MSIL.PasswordStealerA.F1EFE2D6?


File Info:

crc32: A5E9B8D8
md5: c71dc3a9e90e1b4e64a24c1e4955dcbe
name: C71DC3A9E90E1B4E64A24C1E4955DCBE.mlw
sha1: bfa1bc619407f5dc8ac56af1eeb9645f1246509c
sha256: d4be0ac8b7d5c27bb774b5f051eb786f8f98dc708d6f06abd8235d40b3137783
sha512: 85e38dd223da9d14d695dcea0eca42170cd4728716fd8bd79f2c438cdf330745e49b271960d2c64bdf3474d1f55fb703f722f30b414b2c77450dfbe2aa8a2b2a
ssdeep: 6144:VTEgdc0YWebGbXOsA6j1Rdhz7w3/gxSKf5KF7xcEUeEHb8F9UealQVCGQNtA8Bc:VTEgdfYcA6fWGO4kz7vQQ6cd2
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 MaxXor 2020
Assembly Version: 1.4.0.0
InternalName: Client.exe
FileVersion: 1.4.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: Quasar
ProductVersion: 1.4.0
FileDescription: Quasar Client
OriginalFilename: Client.exe

Generic.MSIL.PasswordStealerA.F1EFE2D6 also known as:

Elasticmalicious (high confidence)
DrWebTrojan.MulDrop13.10660
MicroWorld-eScanGeneric.MSIL.PasswordStealerA.F1EFE2D6
FireEyeGeneric.mg.c71dc3a9e90e1b4e
McAfeeGenericRXKZ-ZO!C71DC3A9E90E
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 0056b6611 )
BitDefenderGeneric.MSIL.PasswordStealerA.F1EFE2D6
K7GWTrojan ( 005690671 )
Cybereasonmalicious.9e90e1
TrendMicroTSPY_TINCLEX.SM1
BitDefenderThetaGen:NN.ZemsilF.34634.Fm0@a4md90m
CyrenW32/MSIL_Mintluks.A.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:RATX-gen [Trj]
ClamAVWin.Packed.Downeks-6898097-0
KasperskyHEUR:Trojan.MSIL.Quasar.gen
TencentMalware.Win32.Gencirc.11b10d75
Ad-AwareGeneric.MSIL.PasswordStealerA.F1EFE2D6
F-SecureHeuristic.HEUR/AGEN.1135947
ZillyaTrojan.Quasar.Win32.4142
InvinceaML/PE-A
McAfee-GW-EditionGenericRXKZ-ZO!C71DC3A9E90E
EmsisoftTrojan.Agent (A)
IkarusBackdoor.Quasar
JiangminTrojan.MSIL.oyqd
MaxSecureTrojan.Malware.300983.susgen
AviraHEUR/AGEN.1135947
Antiy-AVLTrojan/MSIL.Quasar
MicrosoftTrojan:MSIL/Perseus.AKR!MTB
ArcabitGeneric.MSIL.PasswordStealerA.F1EFE2D6
ZoneAlarmHEUR:Trojan.MSIL.Quasar.gen
GDataMSIL.Backdoor.Quasar.B
CynetMalicious (score: 100)
AhnLab-V3Backdoor/Win32.QuasarRAT.R341693
VBA32TScope.Trojan.MSIL
ALYacGeneric.MSIL.PasswordStealerA.F1EFE2D6
MAXmalware (ai score=83)
MalwarebytesBackdoor.Quasar
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/Agent.BPH
TrendMicro-HouseCallTSPY_TINCLEX.SM1
RisingSpyware.Downeks!8.E248 (TFE:D:2yGPCWfVo9E)
YandexTrojan.Agent!4DOL8BvIv6I
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_84%
FortinetMSIL/Agent.BPH!tr
WebrootW32.Trojan.Quasar
AVGWin32:RATX-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Generic.MSIL.PasswordStealerA.F1EFE2D6?

Generic.MSIL.PasswordStealerA.F1EFE2D6 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment