Trojan

IL:Trojan.MSILZilla.18805 removal

Malware Removal

The IL:Trojan.MSILZilla.18805 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILZilla.18805 virus can do?

  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine IL:Trojan.MSILZilla.18805?


File Info:

name: 1B3EFA06ABAA377F1300.mlw
path: /opt/CAPEv2/storage/binaries/211fcc2d7e0dfe66276f0321f2e4683cfafd7855299b583f687cca95f7dc3cf5
crc32: ABA64189
md5: 1b3efa06abaa377f13008c7fd8cb46b5
sha1: 3f97cb5735cbfb16abfb5fcb95fac77f07799a99
sha256: 211fcc2d7e0dfe66276f0321f2e4683cfafd7855299b583f687cca95f7dc3cf5
sha512: a2200e8a21495889e7664955dc81ddce8d33a25c4f93c17d789e9674d262de6223b717f3bb3c9f9921cc78cd72813305c7121fb6876dfac933d0633d24d40f36
ssdeep: 12288:AyAN43dMy2WruG56mlz2kboWrODrKZs9h:GYdtTeFT
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1D2C4C1243DEF50197173EF959ED470D5DE9EF6A33E2A784A009203468653E80EDE2A3D
sha3_384: 24b40325e6e693a751ee5e1fac71dde39f9f73e7fb9b0bac7e99d87c9bb5173e2228b08b9beaf4b069ebc622307737b0
ep_bytes: ff2500204000680065006c006c006f00
timestamp: 2080-08-24 02:31:15

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: UrbanBishopLocal
FileVersion: 1.0.0.0
InternalName: UrbanBishopLocal.exe
LegalCopyright: Copyright © 2020
LegalTrademarks:
OriginalFilename: UrbanBishopLocal.exe
ProductName: UrbanBishopLocal
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

IL:Trojan.MSILZilla.18805 also known as:

BkavW32.AIDetectNet.01
LionicTrojan.MSIL.Donut.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanIL:Trojan.MSILZilla.18805
FireEyeGeneric.mg.1b3efa06abaa377f
McAfeeGenericRXSM-CS!1B3EFA06ABAA
CylanceUnsafe
SangforTrojan.Msil.Agent.Vwkp
K7AntiVirusTrojan ( 00590a5c1 )
AlibabaTrojan:MSIL/Donut.bbcbb9f2
K7GWTrojan ( 00590a5c1 )
Cybereasonmalicious.735cbf
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.AERA
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Trojan.MSIL.Donut.gen
BitDefenderIL:Trojan.MSILZilla.18805
AvastWin32:TrojanX-gen [Trj]
TencentMsil.Trojan.Donut.Dyha
Ad-AwareIL:Trojan.MSILZilla.18805
DrWebBackDoor.Meterpreter.227
VIPREIL:Trojan.MSILZilla.18805
TrendMicroTROJ_GEN.R002C0PG322
McAfee-GW-EditionGenericRXSM-CS!1B3EFA06ABAA
EmsisoftIL:Trojan.MSILZilla.18805 (B)
SentinelOneStatic AI – Malicious PE
GDataIL:Trojan.MSILZilla.18805
JiangminTrojan.MSIL.amztn
AviraHEUR/AGEN.1247929
Antiy-AVLTrojan/Generic.ASMalwS.7679
ArcabitIL:Trojan.MSILZilla.D4975
ViRobotTrojan.Win32.Z.Win.551424.K
ZoneAlarmHEUR:Trojan.MSIL.Donut.gen
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.C5044699
Acronissuspicious
BitDefenderThetaGen:NN.ZemsilF.34786.Hm0@aeYDd2
ALYacIL:Trojan.MSILZilla.18805
MAXmalware (ai score=81)
MalwarebytesTrojan.ShellCode
TrendMicro-HouseCallTROJ_GEN.R002C0PG322
RisingTrojan.Generic/MSIL@AI.100 (RDM.MSIL:e0bHyN32Zuo1ATsJifa4dg)
IkarusTrojan.MSIL.Crypt
MaxSecureTrojan.Malware.103649312.susgen
FortinetPossibleThreat
AVGWin32:TrojanX-gen [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_60% (W)

How to remove IL:Trojan.MSILZilla.18805?

IL:Trojan.MSILZilla.18805 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment