Trojan

IL:Trojan.MSILZilla.10330 (B) malicious file

Malware Removal

The IL:Trojan.MSILZilla.10330 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILZilla.10330 (B) virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Created a process from a suspicious location

How to determine IL:Trojan.MSILZilla.10330 (B)?


File Info:

name: 4BC184368C39827F8A94.mlw
path: /opt/CAPEv2/storage/binaries/20a88359c8cd3bb7a743bcb93b105eb539946bdfe0012e88f6b7655719645d1a
crc32: 34264D58
md5: 4bc184368c39827f8a9446b60754c325
sha1: 8e69e193d8447d11b04a2e760c61dfc9fb96270b
sha256: 20a88359c8cd3bb7a743bcb93b105eb539946bdfe0012e88f6b7655719645d1a
sha512: 1243c31f609ca5e9a2523bd47e433a5921496228dee1d85927dfeff3b33b581d68cb4008aa3faa3040ce4c22566cbc69e50aecaf7b47cc4f8e321a48ce368759
ssdeep: 49152:IbA3zBTceuTiJfaamTdTcoTWoRk+cGw11oXxjFc9qlq7FlBt4BVhYmH6:IboTcDTlcoTVFAgFjlwFlHcVK
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1EFC52382FED551B2E6B719355A394A306538BD141F358A8F73EC241ED732280AB317BB
sha3_384: 9db7e0af3f86e6a2cee7c067866afe1a6e8f814167e98ae3b56ccdcff76a5a17d599f19263650061dbe3abead896a753
ep_bytes: e874040000e988feffff3b0d68e64300
timestamp: 2020-10-27 18:17:33

Version Info:

0: [No Data]

IL:Trojan.MSILZilla.10330 (B) also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Makop.trQA
Elasticmalicious (high confidence)
MicroWorld-eScanIL:Trojan.MSILZilla.10330
FireEyeIL:Trojan.MSILZilla.10330
McAfeeArtemis!4BC184368C39
CylanceUnsafe
Cybereasonmalicious.68c398
SymantecTrojan.Gen.2
ESET-NOD32a variant of MSIL/Kryptik.EPI
APEXMalicious
KasperskyUDS:Backdoor.MSIL.Bladabindi.gen
BitDefenderIL:Trojan.MSILZilla.10330
NANO-AntivirusTrojan.Win32.Bladabindi.jinvuh
AvastWin32:RATX-gen [Trj]
TrendMicroTROJ_GEN.R002C0GKM21
McAfee-GW-EditionBehavesLike.Win32.Generic.vc
EmsisoftIL:Trojan.MSILZilla.10330 (B)
SentinelOneStatic AI – Malicious SFX
eGambitUnsafe.AI_Score_62%
MicrosoftBackdoor:MSIL/Bladabindi.AP
ViRobotTrojan.Win32.Z.Bladabindi.2674115
GDataIL:Trojan.MSILZilla.10330
BitDefenderThetaGen:NN.ZemsilF.34084.mmY@au!5Abd
ALYacIL:Trojan.MSILZilla.10330
MAXmalware (ai score=86)
VBA32TScope.Trojan.MSIL
TencentMsil.Backdoor.Bladabindi.Pgmz
AVGWin32:RATX-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (W)

How to remove IL:Trojan.MSILZilla.10330 (B)?

IL:Trojan.MSILZilla.10330 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment