Trojan

What is “IL:Trojan.MSILZilla.7622”?

Malware Removal

The IL:Trojan.MSILZilla.7622 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILZilla.7622 virus can do?

  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid

How to determine IL:Trojan.MSILZilla.7622?


File Info:

name: C40B181528E5AB22A13B.mlw
path: /opt/CAPEv2/storage/binaries/7f39922980080dab7eff43ccf880c26e0849e65315ad2c2af2734d573dfd6c68
crc32: DBFD9DF3
md5: c40b181528e5ab22a13b4702094563fb
sha1: ee93785c46b625b0d3ed4d485e94c279a5f01e5d
sha256: 7f39922980080dab7eff43ccf880c26e0849e65315ad2c2af2734d573dfd6c68
sha512: 314ade2c76c3e16ee07371a8a271bae91f37a273d4847b56887bd2b32191017d9877fb6b23048337f0f0f97353cfa66eb126f94cf3766a1111a3528896ab6e15
ssdeep: 3072:z6y/HPqzvhGlWNnLdzLsHSENAKgfWenKPmBWZazNiJb8cf0+uFrlql3Cspwtkrtb:uF7EENnZiNArtKPmBWUcJb81sQiC
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T172445C1127EC4A15E2FF0B7AE478651A03F7F406743AE79E4A886AED2F13B468511373
sha3_384: 5443235ecb99c381bb6313c109cde2409762a504f28cf21b047608f9fb747137317c4ec20928864c177dd3a44cc2173c
ep_bytes: ff25002040003005a003010100000200
timestamp: 2022-02-03 13:09:52

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: Rubeus
FileVersion: 1.0.0.0
InternalName: Rubeus.exe
LegalCopyright: Copyright © 2018
LegalTrademarks:
OriginalFilename: Rubeus.exe
ProductName: Rubeus
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

IL:Trojan.MSILZilla.7622 also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 99)
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
ALYacIL:Trojan.MSILZilla.7622
MalwarebytesHackTool.Rubeus
K7AntiVirusRiskware ( 0055f8b11 )
BitDefenderIL:Trojan.MSILZilla.7622
K7GWRiskware ( 0055f8b11 )
Cybereasonmalicious.528e5a
CyrenW32/Rubeus.A.gen!Eldorado
SymantecHacktool.Rubeus!gen1
ESET-NOD32a variant of MSIL/Riskware.Rubeus.C
APEXMalicious
ClamAVWin.Trojan.HackTool_MSIL_Rubeus_1-9805032-0
KasperskyVHO:HackTool.MSIL.Agent.gen
MicroWorld-eScanIL:Trojan.MSILZilla.7622
RisingHackTool.Rubeus!1.CFFD (CLASSIC)
EmsisoftIL:Trojan.MSILZilla.7622 (B)
F-SecureHeuristic.HEUR/AGEN.1208272
TrendMicroHackTool.MSIL.Rubeus.SM
McAfee-GW-EditionHackTool-FEY!C40B181528E5
FireEyeGeneric.mg.c40b181528e5ab22
SophosATK/Rubeus-B
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1208272
MAXmalware (ai score=84)
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
ZoneAlarmVHO:HackTool.MSIL.Agent.gen
GDataIL:Trojan.MSILZilla.7622
AhnLab-V3Trojan/Win.SZ.C4773711
McAfeeHackTool-FEY!C40B181528E5
TrendMicro-HouseCallHackTool.MSIL.Rubeus.SM
TencentHackTool.Win32.Rubeus.a
IkarusVirus.Win32.Kekeo
MaxSecureTrojan.Malware.300983.susgen
BitDefenderThetaGen:NN.ZemsilF.34182.pm0@aCpRZqb
AVGWin32:HacktoolX-gen [Trj]
AvastWin32:HacktoolX-gen [Trj]

How to remove IL:Trojan.MSILZilla.7622?

IL:Trojan.MSILZilla.7622 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment