Trojan

About “IL:Trojan.MSILZilla.16911 (B)” infection

Malware Removal

The IL:Trojan.MSILZilla.16911 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILZilla.16911 (B) virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • .NET file is packed/obfuscated with SmartAssembly
  • Authenticode signature is invalid

How to determine IL:Trojan.MSILZilla.16911 (B)?


File Info:

name: F1F865CB319E5D3FAF8E.mlw
path: /opt/CAPEv2/storage/binaries/2f2099a4abac8db69abfecadc25f6a9f82e946cba22f229c32ca5274fa04c86d
crc32: 03560EA1
md5: f1f865cb319e5d3faf8edf435d626b0e
sha1: 245c174dff7e980ab37e9fe8056346e070693e78
sha256: 2f2099a4abac8db69abfecadc25f6a9f82e946cba22f229c32ca5274fa04c86d
sha512: 1b8cf2f7ded50b650e25c2151c2fffb98fa186d7ac22398d144ec11cd55aec9be3c29f5555e2e6382573789606e588c338f971745145097b101651c5b7025309
ssdeep: 384:AJEXZYvKe2vGeDN5I/nDQxwgTWo2Dv2NoaG+iRPJtFA0sOFNvfWGFW:AKqvKrnno6W/DuNoaG+iV72UFNvh
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T113729F15B396C376DBA70A339CB3D381177EE6428613D3AE58CD4549F453B164AD0B20
sha3_384: 52d5c4289102d6683526c628711ce233f82a57ad72a527ddf8b8f0b490cb28001e2ee0612089d7e727af4f72727d445b
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-05-10 11:57:29

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName: Microsoft Corporation
FileDescription:
FileVersion: 2.11.15.0
InternalName: Mzvscwj.exe
LegalCopyright:
LegalTrademarks:
OriginalFilename: Mzvscwj.exe
ProductName: Microsoft Reader
ProductVersion: 2.11.15.0
Assembly Version: 2.11.15.0

IL:Trojan.MSILZilla.16911 (B) also known as:

BkavW32.AIDetectNet.01
tehtrisGeneric.Malware
MicroWorld-eScanIL:Trojan.MSILZilla.16911
FireEyeGeneric.mg.f1f865cb319e5d3f
ALYacIL:Trojan.MSILZilla.16911
CylanceUnsafe
Cybereasonmalicious.b319e5
BitDefenderThetaGen:NN.ZemsilF.34638.bm0@aqvRZfm
Elasticmalicious (high confidence)
Paloaltogeneric.ml
KasperskyVHO:Trojan.MSIL.Injuke.gen
BitDefenderIL:Trojan.MSILZilla.16911
AvastPWSX-gen [Trj]
Ad-AwareIL:Trojan.MSILZilla.16911
SentinelOneStatic AI – Suspicious PE
EmsisoftIL:Trojan.MSILZilla.16911 (B)
APEXMalicious
GDataIL:Trojan.MSILZilla.16911
MicrosoftTrojan:Win32/Sabsik.TE.B!ml
CynetMalicious (score: 100)
MAXmalware (ai score=89)
IkarusWin32.Outbreak
MaxSecureTrojan.Malware.300983.susgen
AVGPWSX-gen [Trj]

How to remove IL:Trojan.MSILZilla.16911 (B)?

IL:Trojan.MSILZilla.16911 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment