Trojan

About “IL:Trojan.MSILZilla.18153” infection

Malware Removal

The IL:Trojan.MSILZilla.18153 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILZilla.18153 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous .NET characteristics
  • Binary compilation timestomping detected

How to determine IL:Trojan.MSILZilla.18153?


File Info:

name: 8DFD565222211BCDB7ED.mlw
path: /opt/CAPEv2/storage/binaries/f67e422d1bc1b1c5fef7e6a7f1efa57a2ec985ed248976c7e25b78239739a0e0
crc32: B19ED902
md5: 8dfd565222211bcdb7ed304add45d3ac
sha1: 4bcae1d9d84abe095c5374c5f14410e104d52850
sha256: f67e422d1bc1b1c5fef7e6a7f1efa57a2ec985ed248976c7e25b78239739a0e0
sha512: 6bdbe357227c1977951d18fe58731270d7efa58d11cd1a8842e4dea82f943c1bac646dc2e9272173f7d80668a2a32ed39186b1273c3deda7515fdc79d25a6101
ssdeep: 768:GSD2Pn4zVCAlk3PZ5ZTAOZ5ZEZ5Zr0Z5Zs4MM60U/c5eih+/m:4nOUUk//SO/2/e/ay6//KK/m
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F9F2AF1367D493B4CF7F073668D2A0202B76F6859896E79C4CB310CEB6263022771B6B
sha3_384: b0152bb51048f6ef98b2ba9998ccca048a3a7f42ddac4215af99d8bac153304673315a23a7806b32ce35ba8f4345a325
ep_bytes: ff250020400000000000000000000000
timestamp: 2049-03-10 23:42:44

Version Info:

Translation: 0x0000 0x04b0
Comments: Microsoft Windows Calculator
CompanyName: Microsoft
FileDescription: Calculator
FileVersion: 0.0.0.0
InternalName: Calculator.exe
LegalCopyright: Copyright © 2022
LegalTrademarks:
OriginalFilename: Calculator.exe
ProductName: Calc
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

IL:Trojan.MSILZilla.18153 also known as:

BkavW32.AIDetectNet.01
LionicTrojan.Win32.Zilla.4!c
MicroWorld-eScanIL:Trojan.MSILZilla.18153
CAT-QuickHealTrojan.IGENERIC
McAfeeArtemis!8DFD56522221
SangforTrojan.Win32.Wacatac.B
K7AntiVirusTrojan ( 0058eb861 )
AlibabaTrojan:MSIL/Agent_AGen.52b0b5dd
K7GWTrojan ( 0058eb861 )
Elasticmalicious (moderate confidence)
ESET-NOD32a variant of MSIL/Agent_AGen.LV
APEXMalicious
BitDefenderIL:Trojan.MSILZilla.18153
AvastWin32:Trojan-gen
Ad-AwareIL:Trojan.MSILZilla.18153
EmsisoftIL:Trojan.MSILZilla.18153 (B)
McAfee-GW-EditionArtemis!Trojan
FireEyeIL:Trojan.MSILZilla.18153
SophosMal/Generic-S
SentinelOneStatic AI – Suspicious PE
GDataIL:Trojan.MSILZilla.18153
AviraTR/Agent_AGen.udtuy
ArcabitIL:Trojan.MSILZilla.D46E9
CynetMalicious (score: 100)
ALYacIL:Trojan.MSILZilla.18153
MAXmalware (ai score=86)
TrendMicro-HouseCallTROJ_GEN.R002H0CF522
IkarusTrojan.MSIL.BadJoke
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent_AGen.LV!tr
BitDefenderThetaGen:NN.ZemsilF.34712.cm0@aa84N8i
AVGWin32:Trojan-gen

How to remove IL:Trojan.MSILZilla.18153?

IL:Trojan.MSILZilla.18153 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment