Trojan

Should I remove “IL:Trojan.MSILZilla.9620”?

Malware Removal

The IL:Trojan.MSILZilla.9620 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What IL:Trojan.MSILZilla.9620 virus can do?

  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid
  • Anomalous .NET characteristics
  • CAPE detected the GruntStager malware family

How to determine IL:Trojan.MSILZilla.9620?


File Info:

name: 777EA5FDA94CA29F7D83.mlw
path: /opt/CAPEv2/storage/binaries/6487bcd6faf913df0c3af0fcc96c763bdc3bddd009c2f0897ddc99dafec66643
crc32: EBB4EF51
md5: 777ea5fda94ca29f7d83a9467629c410
sha1: 9086e4a541a15770aef7fa9dd1f1deede463588c
sha256: 6487bcd6faf913df0c3af0fcc96c763bdc3bddd009c2f0897ddc99dafec66643
sha512: 3219c057c7f8564fa874f15a413a89c78f04093edfbb3d8b621059285abb7ef25b2a56b78531acd4abc080904c1757bef420e2d7d1eeb8ca5aef8e4dc7d19562
ssdeep: 192:+b8ceeiGyegN5Hu5OOObthDQNzDK6Kc0LPFRWjSSF/c7:K8ceeiGyegN5O5OOOgOFfQj/27
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T185120A117BD8D9A9C2AEE67918F383684777F20E6237DB4B0D8D91AE18A37801441F0B
sha3_384: 4e2c34bdd99f42b246ee76cb225d6269411d40f526e0b047ea6c180f0d32a03bd619f92ecb4d38894db7bd455be6b671
ep_bytes: ff250020400000000000000000000000
timestamp: 2020-11-25 09:08:24

Version Info:

0: [No Data]

IL:Trojan.MSILZilla.9620 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanIL:Trojan.MSILZilla.9620
FireEyeIL:Trojan.MSILZilla.9620
McAfeeArtemis!777EA5FDA94C
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Ymacco.AA64
K7AntiVirusTrojan ( 005639a71 )
AlibabaTrojan:MSIL/Generic.8539e173
K7GWTrojan ( 005639a71 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZemsilF.34212.aiW@aagUN5d
SymantecDownloader
ESET-NOD32a variant of MSIL/Agent.TQM
APEXMalicious
Paloaltogeneric.ml
BitDefenderIL:Trojan.MSILZilla.9620
NANO-AntivirusTrojan.Win32.Generic.iciild
AvastWin32:Trojan-gen
TencentWin32.Trojan.Bulz.Ahys
Ad-AwareIL:Trojan.MSILZilla.9620
EmsisoftIL:Trojan.MSILZilla.9620 (B)
ComodoMalware@#3kmccjitid58i
ZillyaTrojan.Agent.Win32.1613133
McAfee-GW-EditionBehavesLike.Win32.Generic.zt
SophosMal/Generic-S
IkarusTrojan.MSIL.Agent
GDataIL:Trojan.MSILZilla.9620
JiangminTrojan.MSIL.sbfz
AviraTR/Agent.cjifn
MAXmalware (ai score=85)
MicrosoftVirTool:MSIL/Covent.C
CynetMalicious (score: 99)
AhnLab-V3Malware/Win32.RL_Generic.C4270681
ALYacIL:Trojan.MSILZilla.9620
MalwarebytesGeneric.Malware/Suspicious
TrendMicro-HouseCallTROJ_GEN.R002H0CB622
SentinelOneStatic AI – Suspicious PE
FortinetMSIL/Agent.TEH!tr
AVGWin32:Trojan-gen
PandaTrj/GdSda.A
MaxSecureTrojan.Malware.7175203.susgen

How to remove IL:Trojan.MSILZilla.9620?

IL:Trojan.MSILZilla.9620 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment