Trojan

IL:Trojan.MSILZilla.2960 (B) (file analysis)

Malware Removal

The IL:Trojan.MSILZilla.2960 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILZilla.2960 (B) virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine IL:Trojan.MSILZilla.2960 (B)?


File Info:

name: F598EA34F769FD24A06D.mlw
path: /opt/CAPEv2/storage/binaries/3331d2d728e1aa7cf3631c91e9743fb133bc1e932941b936e6dfa81164b636c0
crc32: D3C074D7
md5: f598ea34f769fd24a06d1ff2be3c4616
sha1: 05f6a53606b7a5759e29e4e41c94f2fc1d28a9e6
sha256: 3331d2d728e1aa7cf3631c91e9743fb133bc1e932941b936e6dfa81164b636c0
sha512: f9e707f1821505643c5e41b54770d866691d88fa6d48026ff31d1d56190a3f026bfcf1f2532b79b09a1f98a8905a72958f0d0ba538a75c0f9aa69ee347a07a19
ssdeep: 96:mAaz8v90qycnSsrqlqvEUYo4u794NOEOqDy4Dk3FbiFT6zNt:mAPmQMlqvEUMY94kEOqDnDk3Fc8
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T166D1C704AFE44572E9BF4B7809B343111AF5B5215A32CB4E1CC4434E5E26B408E97FAA
sha3_384: e96428a7af0ffb536b9e3455832e673c0100cdd42a57ba20e47146df5269767ee64641fb49a63e5028a80cc6229c5dc3
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-12-07 19:56:07

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: build.exe
LegalCopyright:
OriginalFilename: build.exe
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

IL:Trojan.MSILZilla.2960 (B) also known as:

LionicTrojan.MSIL.ClipBanker.7!c
Elasticmalicious (high confidence)
MicroWorld-eScanIL:Trojan.MSILZilla.2960
FireEyeGeneric.mg.f598ea34f769fd24
BitDefenderIL:Trojan.MSILZilla.2960
Cybereasonmalicious.606b7a
BitDefenderThetaGen:NN.ZemsilF.34062.am0@audiGCk
CyrenW32/MSIL_Kryptik.BIV.gen!Eldorado
ESET-NOD32a variant of MSIL/ClipBanker.MH
ClamAVWin.Packed.Clipbanker-7764305-0
KasperskyHEUR:Trojan-Banker.MSIL.ClipBanker.gen
Ad-AwareIL:Trojan.MSILZilla.2960
SophosML/PE-A
DrWebTrojan.DownLoader33.8669
ZillyaTrojan.ClipBanker.Win32.5855
McAfee-GW-EditionBehavesLike.Win32.Generic.xt
SentinelOneStatic AI – Malicious PE
EmsisoftIL:Trojan.MSILZilla.2960 (B)
APEXMalicious
eGambitUnsafe.AI_Score_97%
AviraHEUR/AGEN.1107315
MAXmalware (ai score=83)
MicrosoftTrojan:MSIL/ClipBanker.GC!MTB
SUPERAntiSpywareTrojan.Agent/Gen-BitCoinMiner
GDataIL:Trojan.MSILZilla.2960
CynetMalicious (score: 100)
AhnLab-V3Malware/Win32.RL_Generic.C4163333
ALYacIL:Trojan.MSILZilla.2960
MalwarebytesTrojan.ClipBanker
PandaTrj/GdSda.A
IkarusTrojan.MSIL.ClipBanker
FortinetMSIL/ClipBanker.MH!tr
WebrootW32.Trojan.MSIL.ClipBanker
AVGWin32:TrojanX-gen [Trj]
AvastWin32:TrojanX-gen [Trj]

How to remove IL:Trojan.MSILZilla.2960 (B)?

IL:Trojan.MSILZilla.2960 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment