Trojan

IL:Trojan.MSILZilla.17224 removal guide

Malware Removal

The IL:Trojan.MSILZilla.17224 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILZilla.17224 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine IL:Trojan.MSILZilla.17224?


File Info:

name: 08FAF94A29532C4C8240.mlw
path: /opt/CAPEv2/storage/binaries/bb51a25fa2d0fd9653c2e3684c023d60d9b7d98e93729f8b5eb3f68cbc9c0ac8
crc32: 8E078764
md5: 08faf94a29532c4c8240d5e73bddf3ce
sha1: f96ece994a86342a55f85687543ea90ffffaae12
sha256: bb51a25fa2d0fd9653c2e3684c023d60d9b7d98e93729f8b5eb3f68cbc9c0ac8
sha512: 46e8493a89b71ea0867211de0a3f464c94f16e394aa333d5de31e83b36118866008a1300691fbd342013b7594768d10d747f8fd2192c4bea8adcfb815929f02d
ssdeep: 48:69QhO/jNRnnBbZu1nypUsVNMkbF+VKbFRQbHP+K04GECtaRklOXc88FFovpfbNtm:O/jLZZu5AXz+V2miKGhQpzNt
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15EC1D51483E4473BEE768BB2ACB393511B74FA115C679B6D28C5624F7F226C80963B70
sha3_384: 0027291a112dd52890c81740c122d77dffc4f526f6249553bd11bfc5e0d27a0da3ad28607460125abef2a71465e2ea85
ep_bytes: ff25002040006d795365637265745061
timestamp: 2097-01-14 10:33:53

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: Stub_Net
FileVersion: 1.0.0.0
InternalName: Stub_Net.exe
LegalCopyright: Copyright © 2021
LegalTrademarks:
OriginalFilename: Stub_Net.exe
ProductName: Stub_Net
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

IL:Trojan.MSILZilla.17224 also known as:

BkavW32.AIDetectNet.01
MicroWorld-eScanIL:Trojan.MSILZilla.17224
FireEyeIL:Trojan.MSILZilla.17224
ALYacIL:Trojan.MSILZilla.17224
SangforTrojan.MSIL.Convagent.gen
K7AntiVirusRiskware ( 00584baa1 )
K7GWRiskware ( 00584baa1 )
Cybereasonmalicious.94a863
BitDefenderThetaGen:NN.ZemsilCO.34606.am0@auQ8bpd
SymantecML.Attribute.HighConfidence
Elasticmalicious (moderate confidence)
TrendMicro-HouseCallTROJ_GEN.R002H09DO22
KasperskyVHO:Trojan.MSIL.Convagent.gen
BitDefenderIL:Trojan.MSILZilla.17224
AvastWin32:TrojanX-gen [Trj]
Ad-AwareIL:Trojan.MSILZilla.17224
EmsisoftIL:Trojan.MSILZilla.17224 (B)
McAfee-GW-EditionBehavesLike.Win32.Backdoor.zt
SentinelOneStatic AI – Suspicious PE
MAXmalware (ai score=82)
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataIL:Trojan.MSILZilla.17224
CynetMalicious (score: 100)
McAfeeRDN/Generic.dx
APEXMalicious
FortinetPossibleThreat
AVGWin32:TrojanX-gen [Trj]

How to remove IL:Trojan.MSILZilla.17224?

IL:Trojan.MSILZilla.17224 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment