Malware

PWS:MSIL/Discord.AA!MTB removal guide

Malware Removal

The PWS:MSIL/Discord.AA!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PWS:MSIL/Discord.AA!MTB virus can do?

    Related domains:

    z.whorecord.xyz

    How to determine PWS:MSIL/Discord.AA!MTB?

    
    

    File Info:

    crc32: 3C166892
    md5: 2794f1881cb3f2f1b3369facebd725ca
    name: pranks.exe
    sha1: f84c821fa6827807a27ef83ecfde11beb95c3252
    sha256: 9a6518b70b5612d537e1cba4c4ca24a0c9685a07c4114f18608637ca6ed2ae0b
    sha512: 25653afec889a943db7c4508d3010c13c342f33944cfd7962e26f839823fa36fbdaedd09279366c17ec6880212ea30a883a6600e275071ffd3487272d0cfe832
    ssdeep: 768:gVfiy7Z9QkkQVwmiyyRVnGvTXBNSqw/pWTMI8zEqDcA8xNdUDj2CsGiOm5ByMZs:gV9dK+NljdZBy2s8
    type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

    Version Info:

    Translation: 0x0000 0x04b0
    LegalCopyright: Copyright xa9 2019
    Assembly Version: 1.0.0.0
    InternalName: AnarchyGrabber.exe
    FileVersion: 1.0.0.0
    CompanyName:
    LegalTrademarks:
    Comments:
    ProductName: AnarchyGrabber
    ProductVersion: 1.0.0.0
    FileDescription: AnarchyGrabber
    OriginalFilename: AnarchyGrabber.exe

    PWS:MSIL/Discord.AA!MTB also known as:

    DrWebTrojan.PWS.AnarchyNET.2
    MicroWorld-eScanGen:Variant.MSILPerseus.205878
    ALYacGen:Variant.MSILPerseus.205878
    ZillyaTrojan.Discord.Win32.948
    BitDefenderGen:Variant.MSILPerseus.205878
    K7GWPassword-Stealer ( 005582fe1 )
    K7AntiVirusPassword-Stealer ( 005582fe1 )
    Invinceaheuristic
    BitDefenderThetaGen:NN.ZemsilCO.34104.cm0@auinl3d
    F-ProtW32/MSIL_Perseus.AQ.gen!Eldorado
    APEXMalicious
    AvastWin32:TrojanX-gen [Trj]
    GDataGen:Variant.MSILPerseus.205878
    SophosTroj/MSIL-NMA
    F-SecureTrojan.TR/PSW.Discord.edcsz
    McAfee-GW-EditionArtemis!Trojan
    FireEyeGeneric.mg.2794f1881cb3f2f1
    EmsisoftGen:Variant.MSILPerseus.205878 (B)
    IkarusTrojan.MSIL.PSW
    CyrenW32/MSIL_Perseus.AQ.gen!Eldorado
    WebrootW32.Trojan.Gen
    AviraTR/PSW.Discord.edcsz
    MicrosoftPWS:MSIL/Discord.AA!MTB
    ArcabitTrojan.MSILPerseus.D32436
    AhnLab-V3Trojan/Win32.Agent.C4042190
    McAfeeGenericRXKA-JU!2794F1881CB3
    MAXmalware (ai score=86)
    VBA32TScope.Trojan.MSIL
    MalwarebytesSpyware.AnarchyGrabber
    ESET-NOD32a variant of MSIL/PSW.Discord.EG
    FortinetMSIL/Agent.NMA!tr
    Ad-AwareGen:Variant.MSILPerseus.205878
    AVGWin32:TrojanX-gen [Trj]

    How to remove PWS:MSIL/Discord.AA!MTB?

    PWS:MSIL/Discord.AA!MTB removal tool
    • Download and install GridinSoft Anti-Malware.
    • Open GridinSoft Anti-Malware and perform a “Standard scan“.
    • Move to quarantine” all items.
    • Open “Tools” tab – Press “Reset Browser Settings“.
    • Select proper browser and options – Click “Reset”.
    • Restart your computer.

    About the author

    Paul Valéry

    I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

    Leave a Comment