Trojan

IL:Trojan.MSILZilla.13777 removal

Malware Removal

The IL:Trojan.MSILZilla.13777 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILZilla.13777 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine IL:Trojan.MSILZilla.13777?


File Info:

name: 70BDAC5B8A5E3F620A85.mlw
path: /opt/CAPEv2/storage/binaries/0df5606ed6c01664b86460cec9d6f41271c0616a5a6584ffb3ce117436547fae
crc32: 99A285CA
md5: 70bdac5b8a5e3f620a85a238c807155a
sha1: 06569ac70ba145343562e7618593251195dc750c
sha256: 0df5606ed6c01664b86460cec9d6f41271c0616a5a6584ffb3ce117436547fae
sha512: ee4bd3a90031da9aec434c1e0bc416b06a2bd34518f647226fbfd466c28125983e6e2f839fb0a4ad8ad750789f46b5e32b20d6c4d5c4daa15200e9068e512867
ssdeep: 384:t4PDcKebyvpShAhceHfFPuEvIrcdy9yuAuMaYfZ6YMEHBYpy2J9u+Z68F:tkmrhAhcE/IHyr9ayZ6YpHBY/J9u+g8F
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T114B23C04A7FC4637F6FF1B789DF657024771FA166913EB5D069C824E2A227848860B3B
sha3_384: 6edd1f9d83e53ac72a23ff08c745066eae00213b984d9a71825b937a430846f75b9be82ebb326554edca4618fb908fe9
ep_bytes: ff250020400000000000000000000000
timestamp: 2070-04-20 14:58:25

Version Info:

Translation: 0x0000 0x04b0
Comments: Betting terminal installer app
CompanyName: Betconstruct
FileDescription: BettingTerminal installer
FileVersion: 1.0.1.1
InternalName: BTI.exe
LegalCopyright: Copyright © 2021
LegalTrademarks: Betconstruct
OriginalFilename: BTI.exe
ProductName: BettingTerminal installer
ProductVersion: 1.0.1.1
Assembly Version: 1.0.1.1

IL:Trojan.MSILZilla.13777 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanIL:Trojan.MSILZilla.13777
FireEyeIL:Trojan.MSILZilla.13777
ALYacIL:Trojan.MSILZilla.13777
CrowdStrikewin/malicious_confidence_70% (W)
AlibabaTrojan:MSIL/MalwareX.b5ff48d9
K7GWTrojan-Downloader ( 005772be1 )
K7AntiVirusTrojan-Downloader ( 005772be1 )
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.HHS
APEXMalicious
Paloaltogeneric.ml
CynetMalicious (score: 100)
BitDefenderIL:Trojan.MSILZilla.13777
AvastWin32:MalwareX-gen [Trj]
RisingTrojan.Generic/MSIL@AI.100 (RDM.MSIL:6cQvDkHj35FjUafcE6eVXQ)
Ad-AwareIL:Trojan.MSILZilla.13777
VIPREIL:Trojan.MSILZilla.13777
EmsisoftIL:Trojan.MSILZilla.13777 (B)
SentinelOneStatic AI – Malicious PE
GDataIL:Trojan.MSILZilla.13777
AviraHEUR/AGEN.1248926
MicrosoftTrojan:Win32/Wacatac.B!ml
GoogleDetected
McAfeeGenericRXNZ-BF!70BDAC5B8A5E
MAXmalware (ai score=82)
FortinetMSIL/Agent.HHS!tr.dldr
AVGWin32:MalwareX-gen [Trj]
Cybereasonmalicious.b8a5e3

How to remove IL:Trojan.MSILZilla.13777?

IL:Trojan.MSILZilla.13777 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment