Trojan

IL:Trojan.MSILZilla.16053 removal guide

Malware Removal

The IL:Trojan.MSILZilla.16053 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILZilla.16053 virus can do?

  • Dynamic (imported) function loading detected
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine IL:Trojan.MSILZilla.16053?


File Info:

name: 38892C681FBFBA55E79F.mlw
path: /opt/CAPEv2/storage/binaries/76b90299713b5d4ffd3c92b2cd66b3de68148c3133f927dfa385b075fd00d5b1
crc32: 10229698
md5: 38892c681fbfba55e79f825cad8b0674
sha1: ee1e86add82844c30c003899ea819d5edcd07df3
sha256: 76b90299713b5d4ffd3c92b2cd66b3de68148c3133f927dfa385b075fd00d5b1
sha512: 4f013a16318f6b16cc1b1c38e0911d073752e1081a7f8f799cf2b192282d408a1a423eb8b11438685221e988b3c8e3f9be3d2e13b1e3d424a051691dbbe70b1c
ssdeep: 49152:oO4Q+oKfdvWAZnTBfbDM+729vu6ND9aTq24GjdGSFJ4/xRWWr55Rxa+4JtzXBvdh:E3vWA1l8+qvt9PEjdGSU/xkWr7Rx
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1C0C5128D63053E02F93DB2F6C11B159D4889FE5987160686FEC90DA7290D0B4A6CBBF7
sha3_384: eb81da872898206c68e296cb2dd507162b9cb686d98c334cce28f323dcc36a193eb33e66d68c2efd6a8aceb9035fc9f3
ep_bytes: ff250020400000000000000000000000
timestamp: 2090-07-31 09:26:45

Version Info:

Translation: 0x0000 0x04b0
Comments: DOdDOPd!IZAFREEEE
CompanyName: HO!HEOO!ddI!O!W!WFE!ER
FileDescription: MyPrssdoffgrasm
FileVersion: 3.2555.1.0
InternalName: cleaner.exe
LegalCopyright: Copyrfight © 2021
LegalTrademarks: splinterki
OriginalFilename: cleaner.exe
ProductName: Ambulance
ProductVersion: 3.2555.1.0
Assembly Version: 3.2555.1.0

IL:Trojan.MSILZilla.16053 also known as:

BkavW32.AIDetectNet.01
LionicTrojan.MSIL.Bobik.l!c
CynetMalicious (score: 100)
CAT-QuickHealTrojan.MsilFC.S27416975
McAfeeGenericRXSA-HV!38892C681FBF
MalwarebytesSpyware.PasswordStealer
SangforSuspicious.Win32.Save.a
K7AntiVirusPassword-Stealer ( 0057ef901 )
AlibabaTrojanSpy:MSIL/Bobik.5ea62824
K7GWPassword-Stealer ( 0057ef901 )
Cybereasonmalicious.dd8284
CyrenW32/Trojan.WBZS-4110
SymantecTrojan.Gen.2
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/PSW.Agent.SCI
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Trojan-Spy.MSIL.Bobik.gen
BitDefenderIL:Trojan.MSILZilla.16053
MicroWorld-eScanIL:Trojan.MSILZilla.16053
AvastWin32:PWSX-gen [Trj]
TencentWin32.Trojan.Malware.Bquy
Ad-AwareIL:Trojan.MSILZilla.16053
SophosMal/Generic-S + Troj/MSIL-SOQ
ComodoMalware@#2ydmwqj0wuyel
DrWebTrojan.PWS.Stealer.32476
ZillyaTrojan.Agent.Win32.2723240
TrendMicroTrojanSpy.Win32.BLACKGUARD.YXCDAZ
McAfee-GW-EditionGenericRXSA-HV!38892C681FBF
FireEyeIL:Trojan.MSILZilla.16053
EmsisoftIL:Trojan.MSILZilla.16053 (B)
SentinelOneStatic AI – Suspicious PE
GDataIL:Trojan.MSILZilla.16053
JiangminTrojanSpy.MSIL.cfsj
WebrootW32.Trojan.Gen
AviraTR/PSW.Agent.sohfz
MAXmalware (ai score=85)
KingsoftWin32.Troj.Undef.(kcloud)
ArcabitIL:Trojan.MSILZilla.D3EB5
ZoneAlarmHEUR:Trojan-Spy.MSIL.Bobik.gen
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
AhnLab-V3Trojan/Win.PWSX-gen.C4996918
Acronissuspicious
VBA32TScope.Trojan.MSIL
ALYacTrojan.MSIL.Stealer.gen
CylanceUnsafe
TrendMicro-HouseCallTrojanSpy.Win32.BLACKGUARD.YXCDAZ
IkarusTrojan.MSIL.PSW
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.SCI!tr.pws
BitDefenderThetaGen:NN.ZemsilF.34666.No0@aisvdJh
AVGWin32:PWSX-gen [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove IL:Trojan.MSILZilla.16053?

IL:Trojan.MSILZilla.16053 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment