Malware

Heur.Zilix.5 (B) information

Malware Removal

The Heur.Zilix.5 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Heur.Zilix.5 (B) virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Unconventionial binary language: Russian
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • Checks for the presence of known windows from debuggers and forensic tools
  • Anomalous binary characteristics

How to determine Heur.Zilix.5 (B)?


File Info:

crc32: 4B1F203E
md5: b9d827e053e2978229b5a37329f1722a
name: B9D827E053E2978229B5A37329F1722A.mlw
sha1: 2aa30cd2b78053e093feaf296c133b0e092bc952
sha256: 8e70bab805bcff316dd6150acd5810b3f99a93d36275f8ef1806f591ee9cfb5b
sha512: b9f501e30374b183cfcc26f77ab3059fcae36b2ceddd79802ad4c1b369afb6d64b50b15be67264cf78eac410e2c58115b2c0aebaeca1e2cc1d5da63ec5942a0b
ssdeep: 24576:8HRszFfn67mh60edplriA7bKaYTVvxrHiolK/cRgOnmq9g6voJaRSTbl:4yBn026T7LY/XOcOU7m6QJaR+
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright:
InternalName:
FileVersion: 1.1.1.168
CompanyName: eBook
LegalTrademarks:
Comments:
ProductName:
ProductVersion: 1.1.1
FileDescription: eBook Reader
OriginalFilename:
Translation: 0x0419 0x04e3

Heur.Zilix.5 (B) also known as:

K7AntiVirusTrojan ( 7000000f1 )
DrWebTrojan.SMSSend.196
CynetMalicious (score: 100)
ALYacGen:Heur.Zilix.5
CylanceUnsafe
ZillyaTrojan.ArchSMS.Win32.31657
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaRansom:Win32/FakeInstaller.7a81c87f
K7GWTrojan ( 7000000f1 )
Cybereasonmalicious.053e29
CyrenW32/FakeInstall.B.gen!Eldorado
ESET-NOD32a variant of Win32/Hoax.ArchSMS.AS
APEXMalicious
TotalDefenseWin32/FraudInstaller.B
AvastFileRepMalware
ClamAVWin.Trojan.Agent-275552
KasperskyTrojan-Ransom.Win32.FakeInstaller.alva
BitDefenderGen:Heur.Zilix.5
NANO-AntivirusTrojan.Win32.bwvqhz.eaawlj
SUPERAntiSpywareTrojan.Agent/Gen-FakeInst
MicroWorld-eScanGen:Heur.Zilix.5
TencentWin32.Trojan.Fakeinstaller.Pits
Ad-AwareGen:Heur.Zilix.5
SophosML/PE-A + Mal/FakeInst-B
ComodoTrojWare.Win32.Trojan.FakeInstaller.~alva0@361v9v
BitDefenderThetaGen:NN.ZelphiF.34608.hX1aaWr!6Jto
VIPRETrojan.Win32.FakeInst.a (v)
McAfee-GW-EditionBehavesLike.Win32.Dropper.tc
EmsisoftGen:Heur.Zilix.5 (B)
AviraTR/Crypt.XPACK.Gen3
Antiy-AVLTrojan[Ransom]/Win32.FakeInstaller
MicrosoftTrojan:Win32/Ninunarch.N
ArcabitTrojan.Zilix.5
AegisLabTrojan.Win32.FakeInstaller.j!c
ZoneAlarmTrojan-Ransom.Win32.FakeInstaller.alva
GDataGen:Heur.Zilix.5
TACHYONRansom/W32.FakeInstaller.1179202
AhnLab-V3Trojan/Win32.FakeInstaller.R2117
McAfeeSMSFraud.s
MAXmalware (ai score=100)
VBA32TScope.Trojan.Delf
MalwarebytesMalware.AI.1498920361
PandaTrj/Genetic.gen
RisingRansom.FakeInstaller!8.1D69 (CLOUD)
YandexTrojan.GenAsa!5OjBXCx/hD8
IkarusTrojan-Ransom.FakeInstaller
MaxSecureTrojan.Ransom.FakeInstaller.alva
FortinetW32/FakeInstaller.ALVA!tr
AVGFileRepMalware
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.FakeInstaller.HxMB0KMA

How to remove Heur.Zilix.5 (B)?

Heur.Zilix.5 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment