Trojan

IL:Trojan.MSILZilla.5440 malicious file

Malware Removal

The IL:Trojan.MSILZilla.5440 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILZilla.5440 virus can do?

  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine IL:Trojan.MSILZilla.5440?


File Info:

name: 1924E0330223C716BD75.mlw
path: /opt/CAPEv2/storage/binaries/a9a398979d995becc743a7c1aa53dd8582459af807beb5dc9be397d55224fac0
crc32: 452E65CD
md5: 1924e0330223c716bd75c0a46a89d3c6
sha1: 936c6d70f10ed5626bc4c45ffa85f8110abb983a
sha256: a9a398979d995becc743a7c1aa53dd8582459af807beb5dc9be397d55224fac0
sha512: f1d183ba943f1d55de5bb42b1eacf7dd63b236d97f74065691a0f3c5f78a3c24d0148eb382e1dc52a0193a890d6cf03cc930e2cef59a2847ab163a2f54254d21
ssdeep: 96:LCRJfDLlvFxt4Q8CmYfaqwjFdbOsFJTiHZgbpzNt:LiTFxtwxumdb1J2+L
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1FAD19810B3F58A51EEAA0B3C08D352600B70DE96D97593DE189426E9BE22F5019625BB
sha3_384: 29697e20ecaf69498cbf12238eb4fe1bfb772e79f27a004f5b0d6b2cbfdc02d3ee066394e70897643833317a64ded2cc
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-09-18 14:02:36

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: ?
LegalCopyright:
OriginalFilename: ?
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

IL:Trojan.MSILZilla.5440 also known as:

LionicTrojan.MSIL.Disco.a!c
MicroWorld-eScanIL:Trojan.MSILZilla.5440
FireEyeIL:Trojan.MSILZilla.5440
McAfeeArtemis!1924E0330223
K7AntiVirusPassword-Stealer ( 0057f8d11 )
K7GWPassword-Stealer ( 0057f8d11 )
Cybereasonmalicious.0f10ed
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/PSW.Discord.YF
TrendMicro-HouseCallTROJ_GEN.R002H0CKR21
KasperskyHEUR:Trojan-Downloader.MSIL.Disco.gen
BitDefenderIL:Trojan.MSILZilla.5440
AvastWin32:DropperX-gen [Drp]
Ad-AwareIL:Trojan.MSILZilla.5440
EmsisoftIL:Trojan.MSILZilla.5440 (B)
McAfee-GW-EditionBehavesLike.Win32.BadFile.xt
SophosMal/Generic-S
SentinelOneStatic AI – Suspicious PE
AviraTR/PSW.Discord.sxlsy
GridinsoftRansom.Win32.Wacatac.sa
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataIL:Trojan.MSILZilla.5440
CynetMalicious (score: 99)
AhnLab-V3Malware/Gen.Generic.C4776734
ALYacIL:Trojan.MSILZilla.5440
MAXmalware (ai score=81)
MalwarebytesTrojan.MalPack.MSIL
APEXMalicious
TencentMsil.Trojan-downloader.Disco.Dxdc
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Discord.YF!tr.pws
AVGWin32:DropperX-gen [Drp]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_80% (W)

How to remove IL:Trojan.MSILZilla.5440?

IL:Trojan.MSILZilla.5440 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment