Malware

Should I remove “MSIL/Filecoder.BCL”?

Malware Removal

The MSIL/Filecoder.BCL is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Filecoder.BCL virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine MSIL/Filecoder.BCL?


File Info:

name: 157DFF66158AA0968E7B.mlw
path: /opt/CAPEv2/storage/binaries/1077514b92770d240077990933590f2749348bcb3810dfbff8d5e9af1e369fdc
crc32: A346A073
md5: 157dff66158aa0968e7b82d6c6411802
sha1: f1b7216cfc060f2edfbaec43bfc778db347ecee6
sha256: 1077514b92770d240077990933590f2749348bcb3810dfbff8d5e9af1e369fdc
sha512: ca22acbccefe9032e92e2ea3af92aa125c01da8cec6879fee6f745265d7393c919e8ac6ed1cefd187747ab516bd16ceeabf812599539417bf50a27b50c1fdeca
ssdeep: 6144:gfuqa6EilzE6AKEd/9LagjPuoWsLOh+pmNcgJE:gfa0l4vdd/99LuILOsMN
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19D749EE12EA14B4BCC14DE7D82DBDD602FE25E975A3D919E3E54328A34BD260F940F90
sha3_384: 28b2527342776b0c17ec3ddad4073a01e38d95dc787b1f7340e09bed0f41740d167ed22edc01213ba74d4859b75dd446
ep_bytes: ff250020400000000000000000000000
timestamp: 2101-05-29 18:57:45

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: malwrhunterteam
FileVersion: 1.0.0.0
InternalName: MalwareHunterTeam malwrhunterteam Ransomware.exe
LegalCopyright: Copyright © MalwareHunterTeam 2024
LegalTrademarks:
OriginalFilename: MalwareHunterTeam malwrhunterteam Ransomware.exe
ProductName: malwrhunterteam
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

MSIL/Filecoder.BCL also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.72048838
FireEyeGeneric.mg.157dff66158aa096
SkyhighArtemis!Trojan
McAfeeArtemis!157DFF66158A
Cylanceunsafe
SangforRansom.Win32.Agent.V2jz
CrowdStrikewin/malicious_confidence_90% (W)
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of MSIL/Filecoder.BCL
APEXMalicious
TrendMicro-HouseCallRansom.MSIL.HUNTR.THCBOBD
BitDefenderTrojan.GenericKD.72048838
AvastWin32:RansomX-gen [Ransom]
SophosMal/Genasom-A
F-SecureTrojan.TR/AD.Nekark.oyurp
TrendMicroRansom.MSIL.HUNTR.THCBOBD
Trapminemalicious.high.ml.score
EmsisoftTrojan.GenericKD.72048838 (B)
IkarusTrojan.MSIL.Crypt
GoogleDetected
AviraTR/AD.Nekark.oyurp
VaristW32/ABRisk.JJFE-9240
Antiy-AVLTrojan/Win32.Wacatac
MicrosoftRansom:Win32/Genasom
ArcabitTrojan.Generic.D44B60C6
GDataWin32.Trojan.Agent.ZEGHAD
MAXmalware (ai score=81)
MalwarebytesRansom.FileCryptor
RisingRansom.Agent!8.6B7 (CLOUD)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Filecoder.BCL!tr
BitDefenderThetaGen:NN.ZemsilF.36802.vq0@aKs1m!g
AVGWin32:RansomX-gen [Ransom]
DeepInstinctMALICIOUS

How to remove MSIL/Filecoder.BCL?

MSIL/Filecoder.BCL removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment