Malware

Generic.MSIL.PasswordStealerA.F6E7A436 removal instruction

Malware Removal

The Generic.MSIL.PasswordStealerA.F6E7A436 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.MSIL.PasswordStealerA.F6E7A436 virus can do?

  • Network activity detected but not expressed in API logs

How to determine Generic.MSIL.PasswordStealerA.F6E7A436?


File Info:

crc32: 2E3C2519
md5: 5215444228c07342a6b43b3ddc6869c1
name: 5215444228C07342A6B43B3DDC6869C1.mlw
sha1: 15bcb960355a88431ff821e0fde5f57a77dec86c
sha256: 01e937e6bc2a651a47a06b767ce99a1ef26e324e5b424618e74d1e689e328fd9
sha512: be4fcdf5fdad9a50af17c9fc9516af4a76a21fbda22bf996b5577f7476fc9258bb53f212a461e051dda207d2234261445d0c12997fd75b01a9c8580844adebfb
ssdeep: 3072:xzHv4GcDKxlq2nO6139b/RWYM4KlGUSjwpDe1Pslg1p:FH1cDMpnOw9b5apPl6
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 LimerBoy 2020
Assembly Version: 1.3.0.0
InternalName: StormKitty.exe
FileVersion: 1.3.0.0
CompanyName:
LegalTrademarks:
Comments: https://github.com/LimerBoy/StormKitty
ProductName: Neko
ProductVersion: 1.3.0.0
FileDescription: StormKitty
OriginalFilename: StormKitty.exe

Generic.MSIL.PasswordStealerA.F6E7A436 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.MSIL.PasswordStealerA.F6E7A436
FireEyeGeneric.mg.5215444228c07342
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
ALYacGeneric.MSIL.PasswordStealerA.F6E7A436
SangforMalware
BitDefenderGeneric.MSIL.PasswordStealerA.F6E7A436
Cybereasonmalicious.228c07
BitDefenderThetaGen:NN.ZemsilF.34634.km0@aCXgfSe
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
ClamAVWin.Packed.Bulz-9769834-0
KasperskyHEUR:Trojan.Win32.Agent.gen
Ad-AwareGeneric.MSIL.PasswordStealerA.F6E7A436
F-SecureHeuristic.HEUR/AGEN.1138811
DrWebTrojan.PWS.StealerNET.74
McAfee-GW-EditionFareit-FWC!5215444228C0
EmsisoftGeneric.MSIL.PasswordStealerA.F6E7A436 (B)
IkarusTrojan.MSIL.Spy
AviraHEUR/AGEN.1138811
MicrosoftTrojan:MSIL/CryptInject!MTB
ArcabitGeneric.MSIL.PasswordStealerA.F6E7A436
ZoneAlarmHEUR:Trojan.Win32.Agent.gen
GDataMSIL.Trojan.Agent.AVQ
McAfeeFareit-FWC!5215444228C0
MAXmalware (ai score=87)
MalwarebytesSpyware.StormKitty
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/PSW.Agent.RXP
RisingStealer.Agent!8.C2 (TFE:D:N1ILuxvW3vO)
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_75%
FortinetMSIL/Agent.RXP!tr.pws
AVGWin32:MalwareX-gen [Trj]

How to remove Generic.MSIL.PasswordStealerA.F6E7A436?

Generic.MSIL.PasswordStealerA.F6E7A436 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment