Trojan

IL:Trojan.MSILZilla.2941 removal tips

Malware Removal

The IL:Trojan.MSILZilla.2941 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILZilla.2941 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Dynamic (imported) function loading detected
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Created a process from a suspicious location

How to determine IL:Trojan.MSILZilla.2941?


File Info:

name: B7080F0F3C5F5A0723B5.mlw
path: /opt/CAPEv2/storage/binaries/025ef0dc3e5263b4d110c01c4fe8de2898c40f07fa03131d90b3370b94516e38
crc32: 3F2AF562
md5: b7080f0f3c5f5a0723b5a1231cd4728e
sha1: 1e7ff9ad00b2a1d5433a9d8d34cc59152867ee23
sha256: 025ef0dc3e5263b4d110c01c4fe8de2898c40f07fa03131d90b3370b94516e38
sha512: 25bb10032288afb2c9d46f25bc8a93c4cb74416d3d14b32c05ea2d51eed4ec71c709f37e3f13cfe3d852e8bf3418a556a21c73ede256944053e57fb52db30801
ssdeep: 24576:rry2uXzmd6LoaPEYIkD+bBjtbinitf9iOnNM6++RC0/4cZ9efZeQx7j1Jn9Ot9Uz:runVogzIkD+vSitltMy9wcZ9eEQfJ6Uz
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T13F6512127ED04471E0B23A7919FA9670293FBD604F36859F539C363D0BB31816A3A7A7
sha3_384: 04ee14056e168c32a710836daec66e5d805d23b1ed5a2ed6ded9044b6b7292ed76d083b4f66b252088ea634c4add11a6
ep_bytes: e828050000e988feffff3b0d58254300
timestamp: 2021-06-11 09:16:54

Version Info:

0: [No Data]

IL:Trojan.MSILZilla.2941 also known as:

BkavW32.AIDetect.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanIL:Trojan.MSILZilla.2941
McAfeeArtemis!B7080F0F3C5F
CylanceUnsafe
K7GWUnwanted-Program ( 00534ae71 )
Cybereasonmalicious.f3c5f5
CyrenW32/Trojan.EGVA-6075
SymantecTrojan.Gen.MBT
ESET-NOD32multiple detections
APEXMalicious
ClamAVWin.Malware.Score-6997747-0
KasperskyTrojan-Downloader.Win32.Agent.xxzuim
BitDefenderIL:Trojan.MSILZilla.2941
AvastWin32:Trojan-gen
SophosGeneric PUA BO (PUA)
ComodoMalware@#1xonnageqvj72
DrWebTrojan.Siggen8.9905
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
FireEyeGeneric.mg.b7080f0f3c5f5a07
EmsisoftIL:Trojan.MSILZilla.2941 (B)
SentinelOneStatic AI – Malicious PE
GDataApplication.Generic.3054468
eGambitGeneric.Malware
AviraTR/Kryptik.hnayk
Antiy-AVLTrojan/Generic.ASMalwS.30F9C3B
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
BitDefenderThetaGen:NN.ZedlaF.34294.Rq4@a8IcBkk
ALYacApplication.Generic.3054468
MAXmalware (ai score=81)
VBA32BScope.Trojan.OutBrowse
MalwarebytesMalware.AI.4254703010
YandexTrojan.Igent.bVSWxy.2
IkarusTrojan-Downloader.MSIL.Agent
FortinetRiskware/Generic_PUA_CK
AVGWin32:Trojan-gen
PandaTrj/CI.A

How to remove IL:Trojan.MSILZilla.2941?

IL:Trojan.MSILZilla.2941 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment