Trojan

IL:Trojan.MSILZilla.13177 information

Malware Removal

The IL:Trojan.MSILZilla.13177 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILZilla.13177 virus can do?

  • Dynamic (imported) function loading detected
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine IL:Trojan.MSILZilla.13177?


File Info:

name: 42843393554EF38AAAF0.mlw
path: /opt/CAPEv2/storage/binaries/f5e8ba6c28d8d04c583daf792a1ec0002e343ea0186ab79b9bf6ffb9448f025d
crc32: 6FC74904
md5: 42843393554ef38aaaf08f4500180ec2
sha1: 474ccda689bef354255d4a355383485beb2f701d
sha256: f5e8ba6c28d8d04c583daf792a1ec0002e343ea0186ab79b9bf6ffb9448f025d
sha512: ab9899cbc72faecf5f8c7e2aa34abfd1fc5e69b79ce998707f9eb74e0617e347e593127d624fb4b86bfbbd846e14cea7e8deec8a02dd41dabce7482dc692f833
ssdeep: 384:WyBALpW3bvZqNS9LoL3h5HN5xa1hr7SIz46ADVrdko:W9A3bFhcXHE7X41rdk
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11B625C9A63ECC175F9B60F3A1D637341873AF6129C17979E7440426E1F22E428F62BB1
sha3_384: a5267014eb9dea48f7152565aef42ef566f92a3eb97cf16c14d87137cdd0610bd8297e46f36d2f6b2defa63844cf84f9
ep_bytes: ff250020400000000000000000000000
timestamp: 2080-01-15 11:15:20

Version Info:

Translation: 0x0000 0x04b0
Comments: Discord - https://discord.com/
CompanyName: Discord Inc.
FileDescription: Discord - https://discord.com/
FileVersion: 1.0.43.0
InternalName: Tuagrmnm.exe
LegalCopyright: Copyright (c) 2021 Discord Inc. All rights reserved.
LegalTrademarks:
OriginalFilename: Tuagrmnm.exe
ProductName: Discord - https://discord.com/
ProductVersion: 1.0.43.0
Assembly Version: 1.0.43.0

IL:Trojan.MSILZilla.13177 also known as:

LionicTrojan.MSIL.Crysan.m!c
Elasticmalicious (high confidence)
MicroWorld-eScanIL:Trojan.MSILZilla.13177
FireEyeGeneric.mg.42843393554ef38a
ALYacIL:Trojan.MSILZilla.13177
CylanceUnsafe
ZillyaDownloader.Agent.Win32.459356
SangforTrojan.Win32.Sabsik.TE
AlibabaBackdoor:MSIL/Crysan.b7961a4e
CrowdStrikewin/malicious_confidence_100% (W)
CyrenW32/MSIL_Agent.CPG.gen!Eldorado
SymantecMSIL.Downloader!gen7
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.JXW
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Backdoor.MSIL.Crysan.gen
BitDefenderIL:Trojan.MSILZilla.13177
AvastWin32:BackdoorX-gen [Trj]
TencentMsil.Trojan-downloader.Agent.Pbpc
Ad-AwareIL:Trojan.MSILZilla.13177
EmsisoftIL:Trojan.MSILZilla.13177 (B)
TrendMicroTROJ_GEN.R06CC0PAB22
McAfee-GW-EditionRDN/Generic BackDoor
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataIL:Trojan.MSILZilla.13177
WebrootW32.Trojan.Gen
GridinsoftRansom.Win32.Sabsik.sa
ViRobotTrojan.Win32.Z.Agent.14848.MGT
MicrosoftTrojan:Win32/Mamson.A!ac
AhnLab-V3Trojan/Win.ET.C4915115
McAfeeRDN/Generic BackDoor
MAXmalware (ai score=85)
MalwarebytesTrojan.Downloader.MSIL.Generic
TrendMicro-HouseCallTROJ_GEN.R06CC0PAB22
RisingTrojan.Generic/MSIL@AI.90 (RDM.MSIL:9Gek5cGRhnRlZ1+M/RIg1A)
IkarusTrojan.MSIL.Injector
MaxSecureTrojan.Malware.74418669.susgen
FortinetMSIL/Agent.JXX!tr
BitDefenderThetaGen:NN.ZemsilF.34160.am0@aWdJ5mm
AVGWin32:BackdoorX-gen [Trj]
Cybereasonmalicious.689bef
PandaTrj/GdSda.A

How to remove IL:Trojan.MSILZilla.13177?

IL:Trojan.MSILZilla.13177 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment