Trojan

What is “IL:Trojan.MSILZilla.8049”?

Malware Removal

The IL:Trojan.MSILZilla.8049 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILZilla.8049 virus can do?

  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine IL:Trojan.MSILZilla.8049?


File Info:

name: D30F727359603628D973.mlw
path: /opt/CAPEv2/storage/binaries/8fdc3b0d0fa05ce847509db88329b77a5a15dc01d64d17d74b6ab267b16ebf84
crc32: 2D4C7F7D
md5: d30f727359603628d97305dcf48484df
sha1: c816a7525ae0fdc95de1ba2838635c8894d0681a
sha256: 8fdc3b0d0fa05ce847509db88329b77a5a15dc01d64d17d74b6ab267b16ebf84
sha512: 6f17ea9a0357a0e5cf84a0fe9a462a8c703ea9a631df24e272bfee4940d3bfae64e3bad47b621c994b3f0b87022812811c4b9426c593a219af637c0e94c80f9e
ssdeep: 384:upEP397287pu0eIWuw0I0ZV4o1pdOwMP99:uClXyIPjOD3
type: PE32+ executable (GUI) x86-64, for MS Windows
tlsh: T1CD623B25B6DC8371D9AE0676DAB2928053F4C3474C06CF0F6EC532AA99537DA0B937E1
sha3_384: 6b07e22c0ddf8fcec7cb8cb901bdd041ca8a43694c00d6fdb3273b5a0ac99018e5b74a66d2161709d2ef9dc33cb857b3
ep_bytes: 4d5a90000300000004000000ffff0000
timestamp: 2021-11-24 10:56:48

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription:
FileVersion: 1.0.0.0
InternalName: Program.exe
LegalCopyright: Copyright © 2020
LegalTrademarks:
OriginalFilename: Program.exe
ProductName:
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

IL:Trojan.MSILZilla.8049 also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 99)
FireEyeIL:Trojan.MSILZilla.8049
McAfeeArtemis!D30F72735960
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of MSIL/PSW.Discord.IX
APEXMalicious
ClamAVWin.Malware.Bulz-9896362-0
KasperskyUDS:Trojan.Multi.GenericML.xnet
BitDefenderIL:Trojan.MSILZilla.8049
MicroWorld-eScanIL:Trojan.MSILZilla.8049
AvastWin64:Trojan-gen
TencentMsil.Trojan.Msilzilla.Wnmd
Ad-AwareIL:Trojan.MSILZilla.8049
SophosMal/Disteal-N
McAfee-GW-EditionArtemis!Trojan
EmsisoftIL:Trojan.MSILZilla.8049 (B)
GDataIL:Trojan.MSILZilla.8049
AviraHEUR/AGEN.1144056
ArcabitIL:Trojan.MSILZilla.D1F71
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
AhnLab-V3Trojan/Win.Generic.C4616963
ALYacIL:Trojan.MSILZilla.8049
MAXmalware (ai score=85)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Discord.IX!tr.pws
AVGWin64:Trojan-gen
CrowdStrikewin/malicious_confidence_90% (W)

How to remove IL:Trojan.MSILZilla.8049?

IL:Trojan.MSILZilla.8049 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment