Trojan

IL:Trojan.MSILZilla.20925 (B) removal instruction

Malware Removal

The IL:Trojan.MSILZilla.20925 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILZilla.20925 (B) virus can do?

  • Dynamic (imported) function loading detected
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine IL:Trojan.MSILZilla.20925 (B)?


File Info:

name: B1FDB6DAC77A9A13DDA0.mlw
path: /opt/CAPEv2/storage/binaries/b50a0d02b9bcc864a07a3055b4049291b1ec7f174ef49ee35ea229fe36fcdf3f
crc32: 27007D20
md5: b1fdb6dac77a9a13dda07ca6bae7f3a9
sha1: d186afd1904480fae8f7e6b6ac0c22c3664dc6fe
sha256: b50a0d02b9bcc864a07a3055b4049291b1ec7f174ef49ee35ea229fe36fcdf3f
sha512: 4f3269fceb829e299357691a4de1a5e3377c4a7e31751668c345f79749f63b91d17facb125010e9357219880dd1e707a00bf1a0e8fe170ca7dd098e93a390cc0
ssdeep: 24576:UX8ZddSIDaXVd+cYlNNoxYN6mPnuHy0A7u85gxiEZyN6eFInscFo2a4aeeF6D:ywddSI9dNALm/iE7u8WXZyNWnscFod1
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T10A85AE027E44CE11F0099633C2EF454847B49A5566B6E32B7DBA377E26623A37C0D9CB
sha3_384: 36f10b313ca4a18948630211d0c8fa104f966d33ce401d682a9b5210d03f6025d57ffb7c4d1550642a15b8da6fb3ece1
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-06-23 22:26:22

Version Info:

ProductName: tBfYLLRvKkQBcZBEwXXOgM0A
CompanyName: 2cEBwC7gWvgrdW0ZjdybYERzRQ9my
InternalName: SLfZSZ.exe
LegalCopyright: xzhTWYd
Comments: amBum8pUNant
OriginalFilename: xLCHJNte0MD.exe
ProductVersion: 708.377.210.742
FileVersion: 837.685.752.349
Translation: 0x0409 0x0514

IL:Trojan.MSILZilla.20925 (B) also known as:

BkavW32.AIDetectNet.01
tehtrisGeneric.Malware
MicroWorld-eScanIL:Trojan.MSILZilla.20925
FireEyeGeneric.mg.b1fdb6dac77a9a13
McAfeeTrojan-FUJL!B1FDB6DAC77A
CylanceUnsafe
SangforSuspicious.Win32.Save.a
Cybereasonmalicious.ac77a9
CyrenW32/MSIL_Agent.LQ.gen!Eldorado
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Spy.Agent.DTP
APEXMalicious
ClamAVWin.Packed.Basic-9952747-0
KasperskyHEUR:Trojan-Spy.MSIL.Stealer.gen
BitDefenderIL:Trojan.MSILZilla.20925
AvastWin32:RATX-gen [Trj]
Ad-AwareIL:Trojan.MSILZilla.20925
DrWebTrojan.PWS.StealerNET.124
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
EmsisoftIL:Trojan.MSILZilla.20925 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1249330
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataIL:Trojan.MSILZilla.20925
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.FUJL.C5119684
Acronissuspicious
BitDefenderThetaAI:Packer.3601F8E921
ALYacIL:Trojan.MSILZilla.20925
MAXmalware (ai score=84)
MalwarebytesMalware.AI.2331960520
IkarusTrojan.MSIL.Spy
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.DVA!tr
AVGWin32:RATX-gen [Trj]
CrowdStrikewin/malicious_confidence_60% (D)

How to remove IL:Trojan.MSILZilla.20925 (B)?

IL:Trojan.MSILZilla.20925 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment