Trojan

IL:Trojan.MSILZilla.11518 removal

Malware Removal

The IL:Trojan.MSILZilla.11518 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILZilla.11518 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine IL:Trojan.MSILZilla.11518?


File Info:

name: 1AA603A65FB84FE6D719.mlw
path: /opt/CAPEv2/storage/binaries/94315da3c1f217e0201378d75f81daad861c496a4303503d32d238a426fb9e93
crc32: A9CDFEB7
md5: 1aa603a65fb84fe6d719e1cb45d1f5dd
sha1: 6322a5bfa79882996e24ca857e95395091644e25
sha256: 94315da3c1f217e0201378d75f81daad861c496a4303503d32d238a426fb9e93
sha512: 524a6ae2e41e8b5ad94a03637c0d9fe6e03684bea5ea01d41a0849b276636cdd0cb1cb473c5c94a80cd98b036cc09cdd3f9d1d85f69f9865fb94ca127b45d2a6
ssdeep: 384:mMHNzDemdOs5Vf70OsaFbJOI7OZq6b/J4Yxv:mMtzOsPVXFbuZqYJ4e
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15A72190977E882B6C1BF9E7988B222104F70FB0BA911CF5E5AD5A15E1D33F058A51F26
sha3_384: 1e854ec56d3d51f644c601f6f9e0351b7132e12502adf9d706d67e8eaa5e341f92d04c7604d5f2049c0158eb235f14cd
ep_bytes: ff250020400000000000000000000000
timestamp: 2083-07-27 21:59:56

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription:
FileVersion: 1.0.0.0
InternalName: clipper.exe
LegalCopyright:
LegalTrademarks:
OriginalFilename: clipper.exe
ProductName:
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

IL:Trojan.MSILZilla.11518 also known as:

LionicTrojan.MSIL.Shelpak.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanIL:Trojan.MSILZilla.11518
FireEyeGeneric.mg.1aa603a65fb84fe6
McAfeeRDN/PWS-Banker
MalwarebytesTrojan.Clipper
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:MSIL/ClipBanker.5ef89009
K7GWTrojan ( 0055aed01 )
Cybereasonmalicious.65fb84
BitDefenderThetaGen:NN.ZemsilF.34212.bm0@aqG!!Hp
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/ClipBanker.MO
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.MSIL.Shelpak.gen
BitDefenderIL:Trojan.MSILZilla.11518
AvastWin32:TrojanX-gen [Trj]
TencentWin32.Trojan.Generic.Eanu
Ad-AwareIL:Trojan.MSILZilla.11518
EmsisoftIL:Trojan.MSILZilla.11518 (B)
DrWebTrojan.ClipBankerNET.7
TrendMicroTrojanSpy.MSIL.CLIPBANKER.SM
McAfee-GW-EditionRDN/PWS-Banker
SophosMal/Generic-S
IkarusTrojan.MSIL.ClipBanker
GDataIL:Trojan.MSILZilla.11518
MaxSecureTrojan.Malware.103650238.susgen
AviraTR/ATRAPS.Gen
Antiy-AVLTrojan/MSIL.ClipBanker
GridinsoftRansom.Win32.Banker.sa
ZoneAlarmHEUR:Trojan.MSIL.Shelpak.gen
MicrosoftTrojan:MSIL/ClipBanker.GA!MTB
TACHYONTrojan/W32.DN-Shelpak.16896
AhnLab-V3Malware/Win.Trojanspy.C4926237
VBA32TScope.Trojan.MSIL
ALYacIL:Trojan.MSILZilla.11518
MAXmalware (ai score=86)
TrendMicro-HouseCallTrojanSpy.MSIL.CLIPBANKER.SM
RisingSpyware.ClipBanker!1.D05B (CLASSIC)
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetMSIL/ClipBanker.MO!tr
AVGWin32:TrojanX-gen [Trj]
PandaTrj/GdSda.A

How to remove IL:Trojan.MSILZilla.11518?

IL:Trojan.MSILZilla.11518 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment