Trojan

IL:Trojan.MSILZilla.13670 (file analysis)

Malware Removal

The IL:Trojan.MSILZilla.13670 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILZilla.13670 virus can do?

  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine IL:Trojan.MSILZilla.13670?


File Info:

name: ED61754263D81FAD1B84.mlw
path: /opt/CAPEv2/storage/binaries/0a42497301b609fa4431ba29865aaa6f3b2cdf554b8ac8b02220160092c7f364
crc32: CB90AD5A
md5: ed61754263d81fad1b8415ad58c62478
sha1: dde659a062e340d7f8c03e0e6d8f71204ca427c9
sha256: 0a42497301b609fa4431ba29865aaa6f3b2cdf554b8ac8b02220160092c7f364
sha512: 8f836b4efed3b53617cbf52805787ea40d579a23c22b6aa49889edf9bdc3cf91ac628b1ddd727b74b054f16de72c1b0194955f894cab55df2e563bab1fea2722
ssdeep: 1536:gyK5M8zwd1KidUa5WG0UMGzGaSngzAYvMbpydGBAKDThUkX0L1JDGsa:dKMrKinSgzQb0oAKDThUkXU1Y
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1CCB3F7082FEA860EF2BE8AB5B8F091174572B5877815DF4E0DC852DE0A637459C41FAF
sha3_384: cbf6a74da29fe74ab79ae524b486a8d8d0fd9b00eca3c4d06d946062693ae3084a74802ff1ef2ead753c8b4b1b4a589b
ep_bytes: ff250020400000010203040608080000
timestamp: 2022-07-03 18:57:14

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: QvoidStealer.exe
LegalCopyright:
OriginalFilename: QvoidStealer.exe
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

IL:Trojan.MSILZilla.13670 also known as:

BkavW32.AIDetectNet.01
MicroWorld-eScanIL:Trojan.MSILZilla.13670
FireEyeGeneric.mg.ed61754263d81fad
ALYacIL:Trojan.MSILZilla.13670
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusPassword-Stealer ( 00572cea1 )
K7GWPassword-Stealer ( 00572cea1 )
Cybereasonmalicious.263d81
BitDefenderThetaGen:NN.ZemsilF.34742.hm0@a4Xnwhn
CyrenW32/Trojan.HZH.gen!Eldorado
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/PSW.Agent.SCJ
KasperskyHEUR:Trojan-PSW.MSIL.RobloxStealer.gen
BitDefenderIL:Trojan.MSILZilla.13670
APEXMalicious
Ad-AwareIL:Trojan.MSILZilla.13670
SophosML/PE-A + Mal/Disteal-U
DrWebTrojan.DownloaderNET.156
VIPREIL:Trojan.MSILZilla.13670
McAfee-GW-EditionGenericRXTM-CE!ED61754263D8
Trapminemalicious.moderate.ml.score
EmsisoftIL:Trojan.MSILZilla.13670 (B)
IkarusTrojan.MSIL.PSW
GDataIL:Trojan.MSILZilla.13670
AviraHEUR/AGEN.1247913
MAXmalware (ai score=86)
ArcabitIL:Trojan.MSILZilla.D3566
ZoneAlarmHEUR:Trojan-PSW.MSIL.Disco.gen
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.MSILZilla.C5172599
Acronissuspicious
McAfeeGenericRXTM-CE!ED61754263D8
TACHYONTrojan-PWS/W32.DN-Disco.115200
MalwarebytesSpyware.PasswordStealer
AvastWin32:PWSX-gen [Trj]
RisingTrojan.AntiVM!1.CF63 (CLASSIC)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.SCJ!tr.pws
AVGWin32:PWSX-gen [Trj]
PandaTrj/GdSda.A

How to remove IL:Trojan.MSILZilla.13670?

IL:Trojan.MSILZilla.13670 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment