Trojan

IL:Trojan.MSILZilla.2008 removal tips

Malware Removal

The IL:Trojan.MSILZilla.2008 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILZilla.2008 virus can do?

  • Network activity detected but not expressed in API logs

How to determine IL:Trojan.MSILZilla.2008?


File Info:

crc32: 073F1791
md5: a417db6a5480bcbe4fddcd8b5876106a
name: A417DB6A5480BCBE4FDDCD8B5876106A.mlw
sha1: e492404e173b50c5a8f8389b20490794a2522b4a
sha256: 1533fc777b7cc64e8879017764134548cfe50120140319ad4b09ffbc29ca0b0a
sha512: 8d573b6b47028681c58b552fc8c9472e03160be33ffd556351f8ffaf43d9cb587a2795ca778f3f0abb53dd8de4a6ae327b4563e8584082143360d2e5aebdc2a0
ssdeep: 3072:S5x0bP4hBOq/nmZKycDXOhPV3gR7BY44Hxdqa1xa9jIm3dQpeK3w9JB9urBczyW:SHAA
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright: All Rights Reserved
Assembly Version: 5.471.718.558
InternalName: xa7bbxa7f1xa7c1xa7edxa7f1xa7c1xa7bfxa7bexa7bfxa7c1xa7bbxa7bexa7f0xa7c2xa7bdxa7c0xa7d2xa7bfxa7bcxa7c1xa7bfxa7f2xa7bfxa7bfxa7d5xa7efxa7d2xa804xa7ecxa7f0xa800xa7bd.exe
FileVersion: 5.471.718.558
CompanyName: xa7bbxa7f1xa7c1xa7edxa7f1xa7c1xa7bfxa7bexa7bfxa7c1xa7bbxa7bexa7f0xa7c2xa7bdxa7c0xa7d2xa7bfxa7bcxa7c1xa7bfxa7f2xa7bfxa7bfxa7d5xa7efxa7d2xa804xa7ecxa7f0xa800xa7bd Inc.
LegalTrademarks: xa7bbxa7f1xa7c1xa7edxa7f1xa7c1xa7bfxa7bexa7bfxa7c1xa7bbxa7bexa7f0xa7c2xa7bdxa7c0xa7d2xa7bfxa7bcxa7c1xa7bfxa7f2xa7bfxa7bfxa7d5xa7efxa7d2xa804xa7ecxa7f0xa800xa7bd
Comments: xa7bbxa7f1xa7c1xa7edxa7f1xa7c1xa7bfxa7bexa7bfxa7c1xa7bbxa7bexa7f0xa7c2xa7bdxa7c0xa7d2xa7bfxa7bcxa7c1xa7bfxa7f2xa7bfxa7bfxa7d5xa7efxa7d2xa804xa7ecxa7f0xa800xa7bd
ProductName: xa7bbxa7f1xa7c1xa7edxa7f1xa7c1xa7bfxa7bexa7bfxa7c1xa7bbxa7bexa7f0xa7c2xa7bdxa7c0xa7d2xa7bfxa7bcxa7c1xa7bfxa7f2xa7bfxa7bfxa7d5xa7efxa7d2xa804xa7ecxa7f0xa800xa7bd
ProductVersion: 5.471.718.558
FileDescription: xa7bbxa7f1xa7c1xa7edxa7f1xa7c1xa7bfxa7bexa7bfxa7c1xa7bbxa7bexa7f0xa7c2xa7bdxa7c0xa7d2xa7bfxa7bcxa7c1xa7bfxa7f2xa7bfxa7bfxa7d5xa7efxa7d2xa804xa7ecxa7f0xa800xa7bd
OriginalFilename: xa7bbxa7f1xa7c1xa7edxa7f1xa7c1xa7bfxa7bexa7bfxa7c1xa7bbxa7bexa7f0xa7c2xa7bdxa7c0xa7d2xa7bfxa7bcxa7c1xa7bfxa7f2xa7bfxa7bfxa7d5xa7efxa7d2xa804xa7ecxa7f0xa800xa7bd.exe
Translation: 0x0000 0x0514

IL:Trojan.MSILZilla.2008 also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacIL:Trojan.MSILZilla.2008
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (D)
BitDefenderIL:Trojan.MSILZilla.2008
Cybereasonmalicious.e173b5
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.ABEU
APEXMalicious
AlibabaTrojan:Win32/Kryptik.ali2000016
MicroWorld-eScanIL:Trojan.MSILZilla.2008
Ad-AwareIL:Trojan.MSILZilla.2008
SophosML/PE-A
BitDefenderThetaGen:NN.ZemsilF.34692.Yn0@amUfl!hi
McAfee-GW-EditionBehavesLike.Win32.Generic.tz
FireEyeGeneric.mg.a417db6a5480bcbe
EmsisoftIL:Trojan.MSILZilla.2008 (B)
SentinelOneStatic AI – Malicious PE
GDataIL:Trojan.MSILZilla.2008
McAfeeArtemis!A417DB6A5480
MAXmalware (ai score=82)
MalwarebytesMachineLearning/Anomalous.95%
IkarusTrojan-Downloader.MSIL.Agent
Paloaltogeneric.ml

How to remove IL:Trojan.MSILZilla.2008?

IL:Trojan.MSILZilla.2008 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment