Malware

Should I remove “Mal/MSILInj-AH”?

Malware Removal

The Mal/MSILInj-AH is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/MSILInj-AH virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Mal/MSILInj-AH?


File Info:

name: B06643E761D885AD134D.mlw
path: /opt/CAPEv2/storage/binaries/0b2d08740d0e875777401f0340237b74fe9a9215724c672f29abe0cf831eb407
crc32: 8AF5A322
md5: b06643e761d885ad134d848a83d13ce5
sha1: c3b9029b17d1bf534dda0770f8f71db82cd99044
sha256: 0b2d08740d0e875777401f0340237b74fe9a9215724c672f29abe0cf831eb407
sha512: 28a9160652344ec278f007a49b28b74b2e67d7341dc5c3ebcd8b1d776fb954cf9ee31a61ff122cbf8ed95724988b5e2f7c5f59d4426ebfae5c8bc8c0e31af563
ssdeep: 3072:hbzMih16SgSd21Vbuj3dUB5etjB8GaX3oD37eYJ03jnlthbwq8EiaYySbqu:xD6Sgm6Zuj3WB5etjBWX323aUYnl7bM
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T183942134ABD9151A7B72AF7FC790659D9BDB75632E03478A3066034A863BC0ADDF0234
sha3_384: 1dd5e0bbab44bd6c276924a5776b2153cbac188c4dc1618bc6963c86ca37afe17a86690ce6626548e27a443c0029c673
ep_bytes: ff250020400000000000000000000000
timestamp: 2052-11-02 06:30:24

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: FUD
FileVersion: 1.0.0.0
InternalName: FUD.exe
LegalCopyright: Copyright © 2023
LegalTrademarks:
OriginalFilename: FUD.exe
ProductName: FUD
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Mal/MSILInj-AH also known as:

LionicTrojan.Win32.Agent.Y!c
MicroWorld-eScanTrojan.GenericKD.69037691
FireEyeGeneric.mg.b06643e761d885ad
McAfeeArtemis!B06643E761D8
MalwarebytesTrojan.Downloader.MSIL
AlibabaTrojan:MSIL/Injector.fe49d474
Cybereasonmalicious.b17d1b
ArcabitTrojan.Generic.D41D6E7B
BitDefenderThetaGen:NN.ZemsilF.36662.zm0@aaHDe3g
CyrenW32/MSIL_Agent.FNK.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Injector.FPR
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Agent.gen
BitDefenderTrojan.GenericKD.69037691
AvastWin32:RATX-gen [Trj]
SophosMal/MSILInj-AH
F-SecureTrojan.TR/Dropper.Gen
VIPRETrojan.GenericKD.69037691
TrendMicroTROJ_GEN.R002C0RHU23
McAfee-GW-EditionBehavesLike.Win32.Generic.gz
EmsisoftTrojan.GenericKD.69037691 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.Gen
AviraTR/Dropper.Gen
Antiy-AVLTrojan/MSIL.Injector
XcitiumTrojWare.MSIL.Agent.GH@60rvah
MicrosoftBackdoor:Win32/Bladabindi!ml
ViRobotTrojan.Win.Z.Ratx_Gen.423424
ZoneAlarmHEUR:Trojan.Win32.Agent.gen
GDataTrojan.GenericKD.69037691
GoogleDetected
AhnLab-V3Win-Trojan/MSILKrypt09.Exp
ALYacTrojan.GenericKD.69037691
MAXmalware (ai score=83)
VBA32Dropper.MSIL.gen
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002C0RHU23
TencentMalware.Win32.Gencirc.13edb7bc
IkarusTrojan.MSIL.Krypt
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Generic.AP.BEA910!tr
AVGWin32:RATX-gen [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Mal/MSILInj-AH?

Mal/MSILInj-AH removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment