Trojan

IL:Trojan.MSILMamut.2402 (B) removal instruction

Malware Removal

The IL:Trojan.MSILMamut.2402 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILMamut.2402 (B) virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine IL:Trojan.MSILMamut.2402 (B)?


File Info:

name: 9F5242E97F218C4B2F16.mlw
path: /opt/CAPEv2/storage/binaries/5a368395f65de7d888b620ec528a5dc9684c7789c4c99f19c2e36d33b4d7f749
crc32: 193143CB
md5: 9f5242e97f218c4b2f163518c7bfe281
sha1: 3d879dfe43b133e10df75412042f3a3627b27f5f
sha256: 5a368395f65de7d888b620ec528a5dc9684c7789c4c99f19c2e36d33b4d7f749
sha512: 296356cdc457e575024125de9332b5b6554203c8879d8859e525cac4532792fdd7e33365f772d5da241961fe64be31ecfb8ed99da779c3cac80abe398bed05ae
ssdeep: 768:ovy5UhSPQGxb2SgI7L1G9JX4h79bzR5sNHWHdfYqkfmw+vW1VHIr:75UhSfxb2XI75GvXoZDmodfYqmmwmW1e
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T193134B87D2DE9CA6C29D44B97C03622A41F8D2AFA5C2E7AB8CD150F6560FFC1553C6C2
sha3_384: be0204951c2f3a588401a3c09424db6e87f32861b9deaf8d8ced787764ebd2f960eb9f6f4198354784e7730f5077f734
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-08-12 20:20:36

Version Info:

0: [No Data]

IL:Trojan.MSILMamut.2402 (B) also known as:

BkavW32.AIDetectNet.01
MicroWorld-eScanIL:Trojan.MSILMamut.2402
ClamAVWin.Malware.Genkryptik-6860402-0
FireEyeGeneric.mg.9f5242e97f218c4b
ALYacIL:Trojan.MSILMamut.2402
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 700000121 )
BitDefenderIL:Trojan.MSILMamut.2402
K7GWTrojan ( 700000121 )
Cybereasonmalicious.97f218
BaiduMSIL.Backdoor.Bladabindi.a
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Bladabindi.AS
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.MSIL.Crypt.gen
RisingBackdoor.njRAT!1.9E49 (CLASSIC)
Ad-AwareIL:Trojan.MSILMamut.2402
SophosML/PE-A + Troj/Bbindi-W
F-SecureTrojan.TR/Dropper.Gen7
DrWebBackDoor.BladabindiNET.27
VIPREIL:Trojan.MSILMamut.2402
McAfee-GW-EditionBehavesLike.Win32.Backdoor.ph
Trapminemalicious.high.ml.score
EmsisoftIL:Trojan.MSILMamut.2402 (B)
AviraTR/Dropper.Gen7
MAXmalware (ai score=85)
MicrosoftBackdoor:MSIL/Bladabindi.AP
ArcabitIL:Trojan.MSILMamut.D962
ZoneAlarmHEUR:Trojan.MSIL.Crypt.gen
GDataIL:Trojan.MSILMamut.2402
GoogleDetected
AhnLab-V3Trojan/Win32.RL_Generic.C3548043
Acronissuspicious
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Bladabindi.F!tr
BitDefenderThetaGen:NN.ZemsilF.34592.cmW@aSgPgkn
CrowdStrikewin/malicious_confidence_100% (D)

How to remove IL:Trojan.MSILMamut.2402 (B)?

IL:Trojan.MSILMamut.2402 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment