Malware

Generic.MSIL.PasswordStealerA.F8F9E4F2 removal guide

Malware Removal

The Generic.MSIL.PasswordStealerA.F8F9E4F2 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.MSIL.PasswordStealerA.F8F9E4F2 virus can do?

  • Network activity detected but not expressed in API logs

How to determine Generic.MSIL.PasswordStealerA.F8F9E4F2?


File Info:

crc32: 9842BD15
md5: a78fd2bf2618051d7df8210aed864a51
name: cum.exe
sha1: 4cb0b06d6c0eb3eda7d0afcace302172707e2cee
sha256: 450e135013d3a313157070899ed98fe100ed2d0f8a0f16dd2a4674943d3a6800
sha512: 25241d0e035e8faddbef90f1be985a4af83b23a7130b59a9b2b80688ff548d58f9d44530d6caa7ca0d39a5f50f1ae77016e232f35cbb6da2547f000fa17080cb
ssdeep: 6144:pTEgdc0YWX7IxUpGREWZN4C7w8ysQg4GsNvGcEKrb8F9WVyOuTcTR3t:pTEgdfY3xUQTw8YEagQVyOicdt
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: cum inc.
Assembly Version: 0.0.0.1
InternalName:
FileVersion: 0.0.0.1
CompanyName: cum inc.
LegalTrademarks: cum inc.
Comments:
ProductName: cum
ProductVersion: 0.0.0.1
FileDescription: deploys cum on your pc
OriginalFilename:

Generic.MSIL.PasswordStealerA.F8F9E4F2 also known as:

MicroWorld-eScanGeneric.MSIL.PasswordStealerA.F8F9E4F2
FireEyeGeneric.mg.a78fd2bf2618051d
Qihoo-360Generic/Trojan.b28
McAfeeGenericRXKZ-ZO!A78FD2BF2618
CylanceUnsafe
AegisLabTrojan.MSIL.Quasar.4!c
SangforMalware
BitDefenderGeneric.MSIL.PasswordStealerA.F8F9E4F2
K7GWTrojan ( 0054cc751 )
Cybereasonmalicious.f26180
TrendMicroTSPY_TINCLEX.SM1
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:RATX-gen [Trj]
ClamAVWin.Packed.Downeks-6898097-0
GDataGeneric.MSIL.PasswordStealerA.F8F9E4F2
KasperskyHEUR:Trojan.MSIL.Quasar.gen
AlibabaTrojan:MSIL/Perseus.5708e1da
TencentMsil.Trojan.Quasar.Lnel
Ad-AwareGeneric.MSIL.PasswordStealerA.F8F9E4F2
F-SecureHeuristic.HEUR/AGEN.1135947
DrWebTrojan.MulDrop13.10660
Invinceaheuristic
EmsisoftGeneric.MSIL.PasswordStealerA.F8F9E4F2 (B)
IkarusBackdoor.Quasar
JiangminTrojan.MSIL.oyqd
AviraHEUR/AGEN.1135947
Antiy-AVLTrojan/MSIL.Quasar
Endgamemalicious (high confidence)
ArcabitGeneric.MSIL.PasswordStealerA.F8F9E4F2
ZoneAlarmHEUR:Trojan.MSIL.Quasar.gen
MicrosoftTrojan:MSIL/Perseus.AKR!MTB
CynetMalicious (score: 100)
AhnLab-V3Backdoor/Win32.QuasarRAT.R341693
ALYacGeneric.MSIL.PasswordStealerA.F8F9E4F2
MAXmalware (ai score=87)
VBA32TScope.Trojan.MSIL
MalwarebytesBackdoor.Quasar
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/Agent.BPH
TrendMicro-HouseCallTSPY_TINCLEX.SM1
RisingSpyware.Downeks!8.E248 (CLOUD)
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_97%
FortinetMSIL/Agent.BPH!tr
BitDefenderThetaGen:NN.ZemsilF.34138.Fm0@aq5eCXi
AVGWin32:RATX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Generic.MSIL.PasswordStealerA.F8F9E4F2?

Generic.MSIL.PasswordStealerA.F8F9E4F2 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment