Trojan

IL:Trojan.MSILZilla.19736 malicious file

Malware Removal

The IL:Trojan.MSILZilla.19736 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILZilla.19736 virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous .NET characteristics
  • Uses Windows utilities for basic functionality

How to determine IL:Trojan.MSILZilla.19736?


File Info:

name: 0CFB84A4CCC52A9AEE05.mlw
path: /opt/CAPEv2/storage/binaries/f3fa3ed62a55f7f098c9bf7cea6284365c8458b26134530f6f8813a160dccf14
crc32: C59153D1
md5: 0cfb84a4ccc52a9aee051de38e2bec6a
sha1: 4e19cc2d26eca001ac5ea519a6bd7143997a83dc
sha256: f3fa3ed62a55f7f098c9bf7cea6284365c8458b26134530f6f8813a160dccf14
sha512: 852a9951237f17cf2fc89816314b092ca654a1a14187c8a9461a4420c43e03aa0cdde6e7abd29df9730c168c8b599d25e7bd5b4b095783d54efc1a57884b3441
ssdeep: 3072:Cgw5DvCNISWxd9QitLHsFFd/eDKw2yzUrt93hz+LzeAAdiYg2r+:CgwKI7RQilS5eDeuUrTptcYp+
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T18B04F10FE5D668C8C6BD4F382892E9D475A1383F04E0EF0A66D0662F9B36D5BF60D149
sha3_384: 71f54b6e424b71c29743e4c8bdf7e74e3590974ea912fb0a054e44bd73fa74a1c05fa3d031a8053c4a54e6b730b54d04
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-08-13 07:35:59

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: Launcher.exe
LegalCopyright:
OriginalFilename: Launcher.exe
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

IL:Trojan.MSILZilla.19736 also known as:

BkavW32.AIDetectNet.01
CynetMalicious (score: 100)
FireEyeGeneric.mg.0cfb84a4ccc52a9a
CylanceUnsafe
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 700000121 )
K7GWTrojan ( 700000121 )
Cybereasonmalicious.4ccc52
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/TrojanDropper.Small.EF
APEXMalicious
KasperskyHEUR:Backdoor.MSIL.Bladabindi.gen
BitDefenderIL:Trojan.MSILZilla.19736
MicroWorld-eScanIL:Trojan.MSILZilla.19736
AvastWin32:RATX-gen [Trj]
Ad-AwareIL:Trojan.MSILZilla.19736
EmsisoftIL:Trojan.MSILZilla.19736 (B)
VIPREIL:Trojan.MSILZilla.19736
Trapminemalicious.high.ml.score
SophosML/PE-A
GDataIL:Trojan.MSILZilla.19736
AviraHEUR/AGEN.1221666
MAXmalware (ai score=83)
ArcabitIL:Trojan.MSILZilla.D4D18
ZoneAlarmHEUR:Backdoor.MSIL.Bladabindi.gen
MicrosoftProgram:Win32/Wacapew.C!ml
AhnLab-V3Trojan/Win32.RL_Small.C3488454
Acronissuspicious
BitDefenderThetaGen:NN.ZemsilF.34592.lm0@aC2Et6f
ALYacIL:Trojan.MSILZilla.19736
MalwarebytesTrojan.Dropper
RisingTrojan.Generic/MSIL@AI.91 (RDM.MSIL:TtgEUqfDdH8Ag1GCTpw8Iw)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Small.EF!tr
AVGWin32:RATX-gen [Trj]
CrowdStrikewin/malicious_confidence_100% (D)

How to remove IL:Trojan.MSILZilla.19736?

IL:Trojan.MSILZilla.19736 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment