Trojan

IL:Trojan.MSILZilla.4975 malicious file

Malware Removal

The IL:Trojan.MSILZilla.4975 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILZilla.4975 virus can do?

  • Authenticode signature is invalid
  • CAPE detected the DLInjector04 malware family

How to determine IL:Trojan.MSILZilla.4975?


File Info:

name: 56F6840B2B7E680F8323.mlw
path: /opt/CAPEv2/storage/binaries/ab753f314f8289fa879dc906a5b3e78be5352ef06d0cfd908c2eba70d18d1785
crc32: C94BF37B
md5: 56f6840b2b7e680f8323dd66226ed8e0
sha1: bf635846ff4e054c7683448cb0ff14224b8d3558
sha256: ab753f314f8289fa879dc906a5b3e78be5352ef06d0cfd908c2eba70d18d1785
sha512: 9d3c489aa9d42f059e1eb33b2140093474d08f507df22aba8e4ca92b5a7a6699d0ba1147a9c8f483212b7d517ce81336a1600e5646a15b485361bafd024c52ad
ssdeep: 96:TJOElmu1B9ilJJMOfEkdEKozt1ExN3fxcqkTzNt:VLkJwGE3Ev41
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E9F1D506B7E80737D8BE4B7A98B3431053B2EB154D12DB1E6CC8815E5CA27141EA2BB6
sha3_384: 471d60b83c546b3b63d729afa9cb6a3c1045bcccb0cb15daf1f265d39613ee2361c765de529bcd9dc9be6e9cea49bd82
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-09-20 10:25:44

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 1.0.0.0
InternalName: pctool.exe
LegalCopyright:
OriginalFilename: pctool.exe
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

IL:Trojan.MSILZilla.4975 also known as:

LionicTrojan.MSIL.Passteal.7!c
DrWebTrojan.Siggen14.58048
MicroWorld-eScanIL:Trojan.MSILZilla.4975
FireEyeGeneric.mg.56f6840b2b7e680f
McAfeeDownloader-FCFI!56F6840B2B7E
Cylanceunsafe
VIPREIL:Trojan.MSILZilla.4975
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan-Downloader ( 0057caf01 )
AlibabaTrojanBanker:MSIL/SmallDownloader.0bd464da
K7GWTrojan-Downloader ( 0057caf01 )
Cybereasonmalicious.6ff4e0
BitDefenderThetaGen:NN.ZemsilF.36318.am0@aGUxW5h
CyrenW32/MSIL_Kryptik.FFY.gen!Eldorado
SymantecMSIL.Downloader!gen6
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/TrojanDownloader.Tiny.BAM
APEXMalicious
ClamAVWin.Packed.Tiny-9879243-0
KasperskyHEUR:Trojan-Downloader.MSIL.ShortLoader.gen
BitDefenderIL:Trojan.MSILZilla.4975
AvastWin32:DropperX-gen [Drp]
RisingTrojan.AntiVM!1.CF63 (CLASSIC)
EmsisoftIL:Trojan.MSILZilla.4975 (B)
F-SecureTrojan.TR/ATRAPS.Gen
ZillyaTrojan.Passteal.Win32.101
TrendMicroTrojan.MSIL.ANTILOADR.SMPAO
McAfee-GW-EditionDownloader-FCFI!56F6840B2B7E
Trapminemalicious.moderate.ml.score
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataIL:Trojan.MSILZilla.4975
JiangminTrojan.Banker.MSIL.ezr
WebrootW32.Suspicious.Heur
GoogleDetected
AviraTR/ATRAPS.Gen
MAXmalware (ai score=100)
Antiy-AVLTrojan[Downloader]/MSIL.Tiny
ArcabitIL:Trojan.MSILZilla.D136F
SUPERAntiSpywareTrojan.Agent/Gen-Downloader
ZoneAlarmHEUR:Trojan-Downloader.MSIL.ShortLoader.gen
MicrosoftTrojan:MSIL/SmallDownloader!MTB
CynetMalicious (score: 100)
AhnLab-V3Downloader/Win.Disload.R450956
Acronissuspicious
ALYacIL:Trojan.MSILZilla.4975
TACHYONBanker/W32.DN-Passteal.8192.E
VBA32Trojan.MSIL.Injector.gen
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/GdSda.A
TencentTrojan-Banker.Msil.Passteal.wa
IkarusTrojan.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.PGN!tr.dldr
AVGWin32:DropperX-gen [Drp]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove IL:Trojan.MSILZilla.4975?

IL:Trojan.MSILZilla.4975 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment