Malware

What is “MSILHeracles.12559”?

Malware Removal

The MSILHeracles.12559 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSILHeracles.12559 virus can do?

  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine MSILHeracles.12559?


File Info:

crc32: CC349161
md5: f00f316410446838475705bd717615d0
name: F00F316410446838475705BD717615D0.mlw
sha1: 1836601d19a2643d0de0d68f4aed828dd6187326
sha256: 23bc37f7ae1e586ec21c7329bcc0ef757165d272d59ca3c7071c229b06149f89
sha512: ef5fffb3a7bc70ac876ac39430f7a52039ce3236f0d84aa2ca2550efac3b3ed2f1f8683a3d6287bd0bfe7ae985dcc49a48421c440ae1dc98f255797d2d598b1d
ssdeep: 1536:suGEqwzGWQ1lqJ+ppm89UsoqHaevEDAqcvsp9:NgwzGWQ++39UVq6DLcvO9
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright: rqdbBHkaRX26mV0BLn
Assembly Version: 6.9.9.9
InternalName: C:UsersCleberDesktopObfuscateddllhost.exe
FileVersion: 8.3.4.8
CompanyName: m6g8myTc8R65T6C25YAHBg7gxW0U1uh4jOo88
ProductName: M7QoPXsN7h0B0X1YQxcqcx8i5SFlq1lxg9H8VufX
ProductVersion: 6.9.9.9
FileDescription: i5452fMSpF6Ezb2oAmr6d46Zik66oY7q0Z7R
OriginalFilename: C:UsersCleberDesktopObfuscateddllhost.exe
Translation: 0x0409 0x04b0

MSILHeracles.12559 also known as:

K7AntiVirusTrojan ( 004b94ea1 )
LionicTrojan.Win32.Perseus.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacGen:Variant.MSILHeracles.12559
CylanceUnsafe
ZillyaTrojan.Injector.Win32.627174
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:MSIL/Injector.b9afbfca
K7GWTrojan ( 004b94ea1 )
Cybereasonmalicious.410446
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Injector.BSL
APEXMalicious
AvastWin32:Malware-gen
BitDefenderGen:Variant.MSILHeracles.12559
NANO-AntivirusTrojan.Win32.FAYU.fkawkj
MicroWorld-eScanGen:Variant.MSILHeracles.12559
TencentMsil.Trojan.Dropper.Dyfv
Ad-AwareGen:Variant.MSILHeracles.12559
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZemsilF.34294.em0@aW8STlii
McAfee-GW-EditionPWS-FAYU!F00F31641044
FireEyeGeneric.mg.f00f316410446838
EmsisoftGen:Variant.MSILHeracles.12559 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.MSIL.Gen
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.2A238E0
MicrosoftTrojan:Win32/Occamy.C
ArcabitTrojan.MSILHeracles.D310F
GDataGen:Variant.MSILHeracles.12559
McAfeePWS-FAYU!F00F31641044
MAXmalware (ai score=100)
PandaTrj/GdSda.A
IkarusTrojan.MSIL.Injector
FortinetMSIL/Injector.BSL!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove MSILHeracles.12559?

MSILHeracles.12559 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment