Trojan

Should I remove “IL:Trojan.MSILMamut.781 (B)”?

Malware Removal

The IL:Trojan.MSILMamut.781 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILMamut.781 (B) virus can do?

  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine IL:Trojan.MSILMamut.781 (B)?


File Info:

name: 079D4B1560A9F78EE029.mlw
path: /opt/CAPEv2/storage/binaries/33cdb209ee9c13fec54087cec65395021cd1d53b72bd953544fa247ade564796
crc32: 8E0047EB
md5: 079d4b1560a9f78ee029db5feeb3e1d1
sha1: ea39e08bd77a06a7eedb4708f9ff06b4e34287bc
sha256: 33cdb209ee9c13fec54087cec65395021cd1d53b72bd953544fa247ade564796
sha512: 53009e06bdc29b3465b8517eba6736b96fc7c02ded692c9138807adc3cad436212c02f4cafc686491a09a5e92279f0cd3879854b2fef64963f786de21c07d0d0
ssdeep: 24576:yMpPOjc0CdBrO++hYXDx804b9WZhFFL3yBpctnw82/Cjtlm32OCU8K6iR:yqPVnFl4uFYiw82/Gy3DCr
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T195859E027A86CE11D0A91737C6EF442843B8AF4176A6E71A7E6F33BD21513A71D0E5CE
sha3_384: e653b071dafdda4e11c9c18780f010515421bc6a992ff3bd3fc9487d0a4f449b58c45e96f3598e8e4b8291905b47c878
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-01-16 00:24:56

Version Info:

FileVersion: 2019.4.15.16511847
ProductVersion: 2019.4.15.16511847
Unity Version: 2019.4.15f1_fbf367ac14e9
Translation: 0x0409 0x04b0

IL:Trojan.MSILMamut.781 (B) also known as:

BkavW32.AIDetectNet.01
LionicTrojan.MSIL.Stealer.l!c
tehtrisGeneric.Malware
DrWebBackDoor.DarkCrystal.19
MicroWorld-eScanIL:Trojan.MSILMamut.781
ALYacIL:Trojan.MSILMamut.781
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusSpyware ( 0056adb71 )
AlibabaTrojan:Win32/Starter.ali2000005
K7GWSpyware ( 0056adb71 )
Cybereasonmalicious.560a9f
BitDefenderThetaGen:NN.ZemsilF.34712.Rr0@aewaROdi
CyrenW32/MSIL_Agent.LQ.gen!Eldorado
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Spy.Agent.DTP
ClamAVWin.Packed.Msilzilla-9939065-0
KasperskyHEUR:Trojan-Spy.MSIL.Stealer.gen
BitDefenderIL:Trojan.MSILMamut.781
AvastWin32:RATX-gen [Trj]
TencentMsil.Trojan-spy.Stealer.Gcb
Ad-AwareIL:Trojan.MSILMamut.781
EmsisoftIL:Trojan.MSILMamut.781 (B)
ZillyaTrojan.Agent.Win32.2741204
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.079d4b1560a9f78e
SophosML/PE-A
IkarusTrojan.MSIL.Spy
GDataIL:Trojan.MSILMamut.781
AviraHEUR/AGEN.1203070
MAXmalware (ai score=82)
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.MSILZilla.C4914978
Acronissuspicious
McAfeeTrojan-FUJL!079D4B1560A9
VBA32TScope.Trojan.MSIL
MalwarebytesSpyware.PasswordStealer
APEXMalicious
RisingTrojan.Generic/MSIL@AI.100 (RDM.MSIL:fiNDy2w4kEhgYWDgQi3VVQ)
YandexTrojanSpy.Agent!4Hs/yz4IKok
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.DEK!tr
AVGWin32:RATX-gen [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove IL:Trojan.MSILMamut.781 (B)?

IL:Trojan.MSILMamut.781 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment