Malware

MSIL/Vittalia.AC potentially unwanted (file analysis)

Malware Removal

The MSIL/Vittalia.AC potentially unwanted is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Vittalia.AC potentially unwanted virus can do?

  • Creates RWX memory
  • Network activity detected but not expressed in API logs

Related domains:

upd.upd4ter.com
cdn1.upsa1a.com

How to determine MSIL/Vittalia.AC potentially unwanted?


File Info:

crc32: DB0BEFE2
md5: d9718a5181b3dace997e97d2d9e43c06
name: D9718A5181B3DACE997E97D2D9E43C06.mlw
sha1: 5fd20ead0a69b2359aca65031ca6448b653262f7
sha256: 02c2300cb3f7dad31c62a88ddabe630757c9ca64ab7544f57ad898f60d11ec9f
sha512: 5999673c58c242e54c207dd63a7eb0fc01a714b75d7c027e42c07e419c4aca889969c7485e8fe58d775a72d1db95daa9a349f0b7de95cab00d2205f895bf4806
ssdeep: 1536:jHfTHRZ7WS5Xn13NDF6i9zYfHKmK6FfsrOJdwkul4:zfTHRZ795X1dDX9zYfHKmnfsrSdw/i
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2014
Assembly Version: 1.1.8.1613
InternalName: Up4Prot.exe
FileVersion: 1.1.8.1613
ProductVersion: 1.1.8.1613
FileDescription:
OriginalFilename: Up4Prot.exe

MSIL/Vittalia.AC potentially unwanted also known as:

LionicTrojan.Win32.Badur.mgEY
Elasticmalicious (high confidence)
CylanceUnsafe
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaAdWare:MSIL/Vittalia.8f30bda3
K7GWTrojan ( 700000121 )
K7AntiVirusTrojan ( 700000121 )
CyrenW32/MSIL_Injector.FT.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Vittalia.AC potentially unwanted
APEXMalicious
AvastMSIL:Vittalia-B [Adw]
CynetMalicious (score: 99)
Kasperskynot-a-virus:HEUR:AdWare.MSIL.Vittalia.gen
NANO-AntivirusRiskware.Win32.Vittalia.eyyeyt
TencentMsil.Adware.Vittalia.Wsjp
SophosGeneric PUA FP (PUA)
ComodoApplicUnwnt@#1kfgbjcyg65ut
BitDefenderThetaGen:NN.ZemsilF.34266.dm0@amw0kvj
VIPREVittalia Installer
TrendMicroTROJ_GEN.R002C0PKB21
McAfee-GW-EditionPUP-XHB-TD
FireEyeGeneric.mg.d9718a5181b3dace
SentinelOneStatic AI – Malicious PE
JiangminAdWare.MSIL.nodv
AviraHEUR/AGEN.1108370
Antiy-AVLTrojan/Generic.ASMalwS.249D5D7
MicrosoftTrojan:Win32/Wacatac.A!ml
GDataWin32.Application.Agent.GJHCC4
McAfeePUP-XHB-TD
MAXmalware (ai score=97)
VBA32TScope.Trojan.MSIL
MalwarebytesPUP.Optional.Vittalia
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002C0PKB21
IkarusPUA.MSIL.Vittalia
MaxSecureTrojan.Malware.300983.susgen
FortinetAdware/Vittalia
AVGMSIL:Vittalia-B [Adw]
Paloaltogeneric.ml

How to remove MSIL/Vittalia.AC potentially unwanted?

MSIL/Vittalia.AC potentially unwanted removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment