Trojan

IL:Trojan.MSILZilla.5554 (file analysis)

Malware Removal

The IL:Trojan.MSILZilla.5554 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILZilla.5554 virus can do?

  • Network activity detected but not expressed in API logs

How to determine IL:Trojan.MSILZilla.5554?


File Info:

crc32: 7B45B82B
md5: 6a463ae2160f1b70c4cbadd5f87a26f3
name: 6A463AE2160F1B70C4CBADD5F87A26F3.mlw
sha1: 6c6c07651ae92d815a3a5611fe5618f7c7293361
sha256: 40dad6c0f487404a45aea07a4aa31dedba679fc7adc03547aab5c4455fdac40f
sha512: 6e9f58a0f19d83343c79d13e6ed42c975b478d0b57fd22b959dbc4d6e55ca0d4911a3c4e351a7ce1a931d0b12ab6c141b69bb0454a4f3dd4d7949317c452bd4c
ssdeep: 6144:/xr9YaE5Btz9lpPUJQwgNYryZ6wTBXQ7sVc6S7YHtIJL:/NE57hlpSQwgNYOZ6wTBXQ7sVc37YHt
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright:
Assembly Version: 0.0.0.0
InternalName: BITWORKS.exe
FileVersion: 0.0.0.0
ProductVersion: 0.0.0.0
FileDescription:
OriginalFilename: BITWORKS.exe

IL:Trojan.MSILZilla.5554 also known as:

K7AntiVirusTrojan ( 0057a1b31 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.34437
CynetMalicious (score: 99)
CAT-QuickHealTrojan.MsilFC.S23210427
ALYacIL:Trojan.MSILZilla.5554
CylanceUnsafe
CrowdStrikewin/malicious_confidence_90% (W)
K7GWTrojan ( 0057a1b31 )
Cybereasonmalicious.2160f1
SymantecRansom.HiddenTear!g1
ESET-NOD32a variant of MSIL/Filecoder.AGP
APEXMalicious
AvastWin32:RansomX-gen [Ransom]
ClamAVWin.Ransomware.Hydracrypt-9878672-0
KasperskyHEUR:Trojan-Ransom.MSIL.Agent.gen
BitDefenderIL:Trojan.MSILZilla.5554
MicroWorld-eScanIL:Trojan.MSILZilla.5554
Ad-AwareIL:Trojan.MSILZilla.5554
SophosMal/Generic-S
BitDefenderThetaAI:Packer.757B3F591F
TrendMicroRansom_ApisCryptor.R014C0CJU21
McAfee-GW-EditionGenericRXPX-YP!6A463AE2160F
FireEyeGeneric.mg.6a463ae2160f1b70
EmsisoftIL:Trojan.MSILZilla.5554 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1138919
eGambitUnsafe.AI_Score_99%
MicrosoftRansom:MSIL/ApisCryptor.PAA!MTB
ArcabitIL:Trojan.MSILZilla.D15B2
GDataMSIL.Trojan-Ransom.Remind.B
AhnLab-V3Malware/Win.Generic.C4581699
McAfeeGenericRXPX-YP!6A463AE2160F
MAXmalware (ai score=89)
MalwarebytesMalware.AI.3384415825
TrendMicro-HouseCallRansom_ApisCryptor.R014C0CJU21
RisingRansom.Destructor!1.B060 (CLASSIC)
IkarusTrojan-Ransom.Penta
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Filecoder.AGP!tr.ransom
AVGWin32:RansomX-gen [Ransom]

How to remove IL:Trojan.MSILZilla.5554?

IL:Trojan.MSILZilla.5554 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment