Trojan

IL:Trojan.MSILZilla.5696 malicious file

Malware Removal

The IL:Trojan.MSILZilla.5696 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILZilla.5696 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine IL:Trojan.MSILZilla.5696?


File Info:

crc32: 6F58F932
md5: b5f95e59709ce018bf9d16430092dac9
name: B5F95E59709CE018BF9D16430092DAC9.mlw
sha1: 89b43fd31c8b263919122b4986ae76f172db8a46
sha256: 1dea9e91650a59bd523438645354a998468238033a59960f66f1433e60194e7e
sha512: e7ff7d02c6335e905ce29feb9e529609213036b41e5d116991182d8ac6c0f14b9e4103ad109a05036d782a98a7813df8cfa9739080e0d2a589377e25f722d9df
ssdeep: 768:a3NFjKB7s3fWG7CduVGBkWWBDMEJfLfc0psGIfg:KvjssPPXb/JzE4Ifg
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright (C) CyberLink Corp. 2011
Assembly Version: 0.0.0.0
InternalName: fud.exe
FileVersion: 2.0.0.5620
CompanyName: Cyberlink
Comments: Cyberlink WaveEditor
ProductName: Cyberlink WaveEditor
ProductVersion: 2.0.0.5620
FileDescription: Cyberlink WaveEditor
OriginalFilename: fud.exe

IL:Trojan.MSILZilla.5696 also known as:

LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacIL:Trojan.MSILZilla.5696
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:MSIL/StupidCryptor.285b7567
Cybereasonmalicious.9709ce
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Packed.DNGuard.A
APEXMalicious
AvastMSIL:GenMalicious-R [Trj]
BitDefenderIL:Trojan.MSILZilla.5696
NANO-AntivirusTrojan.Win32.DNGuard.ffsdda
MicroWorld-eScanIL:Trojan.MSILZilla.5696
TencentWin32.Trojan.Generic.Piab
Ad-AwareIL:Trojan.MSILZilla.5696
SophosMal/Generic-S
ComodoMalware@#w3cwd3ib74dc
BitDefenderThetaGen:NN.ZemsilF.34266.bm0@a0gpmDc
McAfee-GW-EditionArtemis
FireEyeGeneric.mg.b5f95e59709ce018
EmsisoftIL:Trojan.MSILZilla.5696 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1109319
eGambitUnsafe.AI_Score_98%
MicrosoftTrojan:Win32/Occamy.B
GDataIL:Trojan.MSILZilla.5696
AhnLab-V3Trojan/Win32.Occamy.C2663535
McAfeeArtemis!B5F95E59709C
MAXmalware (ai score=95)
MalwarebytesMachineLearning/Anomalous.100%
PandaTrj/GdSda.A
IkarusTrojan-Ransom.Blocker
FortinetPossibleThreat
AVGMSIL:GenMalicious-R [Trj]
Paloaltogeneric.ml

How to remove IL:Trojan.MSILZilla.5696?

IL:Trojan.MSILZilla.5696 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment