Malware

About “Generic.StealerA.AC972D81” infection

Malware Removal

The Generic.StealerA.AC972D81 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Generic.StealerA.AC972D81 virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • A process created a hidden window
  • Uses Windows utilities for basic functionality
  • Steals private information from local Internet browsers
  • Exhibits behavior characteristic of Pony malware
  • Collects information about installed applications
  • Harvests credentials from local FTP client softwares
  • Harvests information related to installed mail clients

Related domains:

onyemilitari.favcc1.com

How to determine Generic.StealerA.AC972D81?


File Info:

crc32: AC3E91DB
md5: 3a38e9f3d7ba295dd6a5ff18e71f8f1e
name: 3A38E9F3D7BA295DD6A5FF18E71F8F1E.mlw
sha1: 0ddfe6b9a1ebdb633d01b98f22a94451c4e6e129
sha256: eba04bf17d7c411a0fb599d8b8706a3ca07afc2562029b8fd6a0effdf40531a3
sha512: 15fb351dae3ad4dea872b7eb18743504e112c4b06d5acdae9824e6e67d34f0d4f5647485d3a6473dd2a8a09f294f2af97c3c49de81405696b315303d80429de9
ssdeep: 1536:sZSs81NONebqzn8ZRv6BJPZjwbm3SR3OUj6wdeZuNVBL2ojDUskzmz5:ASskqmv6Bng1OO6+L2ojDxz5
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Generic.StealerA.AC972D81 also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGeneric.StealerA.AC972D81
ALYacGeneric.StealerA.AC972D81
CylanceUnsafe
SangforMalware
K7AntiVirusPassword-Stealer ( 0040f4f51 )
BitDefenderGeneric.StealerA.AC972D81
K7GWPassword-Stealer ( 0040f4f51 )
Cybereasonmalicious.3d7ba2
TrendMicroTSPY_FAREIT.SMAL
BaiduWin32.Trojan-PSW.Fareit.a
CyrenW32/Bloop.A.gen!Eldorado
SymantecInfostealer!im
APEXMalicious
AvastSf:Crypt-AS [Trj]
ClamAVWin.Trojan.Fareit-403
KasperskyTrojan-PSW.Win32.Tepfer.gen
NANO-AntivirusTrojan.Win32.Siggen.evgeyh
RisingStealer.Fareit!1.B777 (CLASSIC)
Ad-AwareGeneric.StealerA.AC972D81
SophosMal/Behav-116
ComodoTrojWare.Win32.PWS.Fareit.GS@5t8zib
F-SecureTrojan.TR/Spy.Gen
DrWebTrojan.PWS.Siggen2.59081
VIPRETrojan.Win32.Fareit.gi (v)
InvinceaML/PE-A + Mal/Behav-116
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.nh
FireEyeGeneric.mg.3a38e9f3d7ba295d
EmsisoftGeneric.StealerA.AC972D81 (B)
IkarusTrojan-Spy.Fareit
JiangminTrojan/PSW.Tepfer.caev
AviraTR/Spy.Gen
eGambitUnsafe.AI_Score_100%
MicrosoftPWS:Win32/Fareit
ArcabitGeneric.StealerA.AC972D81
ZoneAlarmTrojan-PSW.Win32.Tepfer.gen
GDataWin32.Trojan-Stealer.Zbot.AB
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Tepfer.R50650
Acronissuspicious
McAfeePWS-Zbot.gen.atz
MAXmalware (ai score=87)
VBA32BScope.Malware-Cryptor.Ponik
MalwarebytesSpyware.Pony
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/PSW.Fareit.D
TrendMicro-HouseCallTSPY_FAREIT.SMAL
YandexTrojan.GenAsa!eAKHNffkSI8
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Agent.NTM!tr
BitDefenderThetaGen:NN.ZexaF.34634.fmW@aCWd9oe
AVGSf:Crypt-AS [Trj]
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360HEUR/QVM20.1.455B.Malware.Gen

How to remove Generic.StealerA.AC972D81?

Generic.StealerA.AC972D81 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment