Categories: Trojan

IL:Trojan.MSILMamut.37290 removal guide

The IL:Trojan.MSILMamut.37290 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILMamut.37290 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine IL:Trojan.MSILMamut.37290?


File Info:

name: AA8AC27EBE6D1DED85BE.mlwpath: /opt/CAPEv2/storage/binaries/d980636a9e9e4b9a0296e514244cb77b852515fa17037bacb477f5c6bc39cef7crc32: A1265CE4md5: aa8ac27ebe6d1ded85bed7e066fec062sha1: 9e557e9f01205f9e193932c4bd33ae757d257795sha256: d980636a9e9e4b9a0296e514244cb77b852515fa17037bacb477f5c6bc39cef7sha512: 4ea15aacf472df5eff0be4f6c89bd8a183f5738c2199f84b351fd23566ac5ba05a9ea482da080c8c58eb14b7bc6e2af8cb12583355d64f05716f33be3e0d745essdeep: 6144:xM76fcPHL7Ti2IjdiqOFZRQvXpQN5Tc3/FE/QY2CWOeiH:xnfTBvKkWfe/F8hQiHtype: PE32 executable (GUI) Intel 80386, for MS Windowstlsh: T1AE8412093D8D2036C14A6371B19D1E86D7F12E03243B5E9E8AB52EBF13D6448DA5FE1Esha3_384: 9b31c90b38923bc9cdfca06a564da990c4f7c393f03f0209c0431ee5fed9442e359677f3892192b9d485d873e94da8aeep_bytes: ff250020400000000000000000000000timestamp: 2022-06-11 21:11:58

Version Info:

Translation: 0x0000 0x04b0FileDescription: FileVersion: 0.0.0.0InternalName: g48_install.exeLegalCopyright: OriginalFilename: g48_install.exeProductVersion: 0.0.0.0Assembly Version: 0.0.0.0

IL:Trojan.MSILMamut.37290 also known as:

Bkav W32.AIDetectNet.01
Cynet Malicious (score: 100)
Cylance Unsafe
Sangfor Suspicious.Win32.Save.a
Cybereason malicious.ebe6d1
Cyren W32/A-520088ff!Eldorado
Symantec ML.Attribute.HighConfidence
Elastic malicious (high confidence)
ESET-NOD32 a variant of MSIL/Kryptik.AEYC
APEX Malicious
Kaspersky HEUR:Trojan.Win32.Generic
BitDefender IL:Trojan.MSILMamut.37290
MicroWorld-eScan IL:Trojan.MSILMamut.37290
Avast Win32:RATX-gen [Trj]
Ad-Aware IL:Trojan.MSILMamut.37290
Emsisoft IL:Trojan.MSILMamut.37290 (B)
DrWeb Trojan.Inject4.35736
VIPRE IL:Trojan.MSILMamut.37290
McAfee-GW-Edition BehavesLike.Win32.Generic.fh
Trapmine malicious.high.ml.score
FireEye Generic.mg.aa8ac27ebe6d1ded
Sophos ML/PE-A
Ikarus Trojan.MSIL.Injector
GData IL:Trojan.MSILMamut.37290
Avira TR/Dropper.Gen
Arcabit IL:Trojan.MSILMamut.D91AA
ZoneAlarm HEUR:Trojan.Win32.Generic
Microsoft Trojan:Win32/Wacatac.B!ml
AhnLab-V3 Trojan/Win.Generic.C5121561
Acronis suspicious
ALYac IL:Trojan.MSILMamut.37290
MAX malware (ai score=85)
SentinelOne Static AI – Malicious PE
MaxSecure Trojan.Malware.300983.susgen
BitDefenderTheta AI:Packer.EC6D314A1F
AVG Win32:RATX-gen [Trj]
CrowdStrike win/malicious_confidence_100% (D)

How to remove IL:Trojan.MSILMamut.37290?

  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.
Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Recent Posts

Malware.AI.1193900862 removal instruction

The Malware.AI.1193900862 is considered dangerous by lots of security experts. When this infection is active,…

3 mins ago

Malware.AI.1522466034 malicious file

The Malware.AI.1522466034 is considered dangerous by lots of security experts. When this infection is active,…

3 mins ago

How to remove “Fragtor.35742 (B)”?

The Fragtor.35742 (B) is considered dangerous by lots of security experts. When this infection is…

8 mins ago

Malware.AI.4082396169 malicious file

The Malware.AI.4082396169 is considered dangerous by lots of security experts. When this infection is active,…

8 mins ago

MSILHeracles.134289 malicious file

The MSILHeracles.134289 is considered dangerous by lots of security experts. When this infection is active,…

8 mins ago

Malware.AI.3800365927 removal instruction

The Malware.AI.3800365927 is considered dangerous by lots of security experts. When this infection is active,…

8 mins ago