Trojan

Should I remove “IL:Trojan.MSILZilla.24788”?

Malware Removal

The IL:Trojan.MSILZilla.24788 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILZilla.24788 virus can do?

  • Authenticode signature is invalid
  • Anomalous .NET characteristics
  • Binary compilation timestomping detected

How to determine IL:Trojan.MSILZilla.24788?


File Info:

name: BF81D0FC2ADE73685157.mlw
path: /opt/CAPEv2/storage/binaries/650891c234300c9a8b026a6731f6918634c4b91c03289cf7a3d609b6fa11cd7c
crc32: 971D0AC5
md5: bf81d0fc2ade7368515716f10e83a9b5
sha1: de85779b2a0c80c7ddd03c1c8db86ef9acab9138
sha256: 650891c234300c9a8b026a6731f6918634c4b91c03289cf7a3d609b6fa11cd7c
sha512: d06c3dfb8718a8e4f41e9b98b77627521805cb4088eea3c368dda76e2be9dd31e4ede17330d4929efec887f2934d1e6c9a0b08ffe536e4cce1a1be4193227360
ssdeep: 96:JdCzheRUfvO4W7WCQYXSDZJyfkntwJd/TkzNt:mheGvO4IWPYCDCf8yO
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T110C1D915A7EC8777E2625B70ADB3C70103F5FA155B379BAD3CC8224E7D226640523672
sha3_384: e1cfcff2949dc017544bb0713c1e071ffc192c854c250960d8f8797d10f8b894eb739a9ac4bc076dbbcac9a34eb51e10
ep_bytes: ff250020400000000000000000000000
timestamp: 2052-02-10 02:34:08

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: Crypt.exe
LegalCopyright:
OriginalFilename: Crypt.exe
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

IL:Trojan.MSILZilla.24788 also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.Win32.Malicious.4!c
MicroWorld-eScanIL:Trojan.MSILZilla.24788
FireEyeGeneric.mg.bf81d0fc2ade7368
SkyhighArtemis!Trojan
ALYacIL:Trojan.MSILZilla.24788
Cylanceunsafe
ZillyaDownloader.Agent.Win32.412356
SangforBackdoor.MSIL.BladiBindi.GH
CrowdStrikewin/malicious_confidence_70% (W)
AlibabaBackdoor:MSIL/BladiBindi.4e178aeb
K7GWTrojan-Downloader ( 005641e41 )
K7AntiVirusTrojan-Downloader ( 005641e41 )
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.GDM
CynetMalicious (score: 100)
APEXMalicious
BitDefenderIL:Trojan.MSILZilla.24788
AvastWin32:Trojan-gen
TencentMsil.Trojan-Downloader.Ader.Rgil
F-SecureTrojan.TR/Dldr.Agent.uxhdz
DrWebTrojan.DownloaderNET.46
VIPREIL:Trojan.MSILZilla.24788
Trapminesuspicious.low.ml.score
SophosMal/Generic-S
IkarusTrojan-Downloader.MSIL.Agent
AviraTR/Dldr.Agent.uxhdz
Antiy-AVLTrojan[Downloader]/MSIL.Agent
ArcabitIL:Trojan.MSILZilla.D60D4
GDataIL:Trojan.MSILZilla.24788
GoogleDetected
AhnLab-V3Malware/Win32.RL_Generic.C4085493
McAfeeArtemis!BF81D0FC2ADE
MAXmalware (ai score=86)
VBA32Downloader.MSIL.Pabin.Heur
MalwarebytesTrojan.MalPack
PandaTrj/GdSda.A
RisingDownloader.Agent!8.B23 (CLOUD)
YandexTrojan.DL.Agent!FN0AdkU8tWA
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.GDM!tr.dldr
BitDefenderThetaGen:NN.ZemsilF.36744.am0@auYn8kl
AVGWin32:Trojan-gen
Cybereasonmalicious.b2a0c8
DeepInstinctMALICIOUS

How to remove IL:Trojan.MSILZilla.24788?

IL:Trojan.MSILZilla.24788 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment