Malware

MSILHeracles.13500 (file analysis)

Malware Removal

The MSILHeracles.13500 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSILHeracles.13500 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine MSILHeracles.13500?


File Info:

name: 3A403FA99A73E8937481.mlw
path: /opt/CAPEv2/storage/binaries/8606cb976d9fa0f5ba752a92eb71c4cc5e78d384ee3a6466785c825adbd56810
crc32: 009F7570
md5: 3a403fa99a73e89374814592ca5a1ef1
sha1: 626a22ce9ae89f32a4d9ebe533c32248f276a89d
sha256: 8606cb976d9fa0f5ba752a92eb71c4cc5e78d384ee3a6466785c825adbd56810
sha512: d97dd95ec03486dbfb74022905ecf29d92d55b220503cf8fb8bc3024834da4ad620d089520b4a92bb1f7ed8ccdbed54354a9911ec2b8881b6e5085b3558cbc64
ssdeep: 24576:YUBPsPkl45UHbdyp/BmPz2AOMq6u24VspLUf4/vf0Sa5udjDcdlJR:YL8l4aHbdpz31F4VzfqUh5u2
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T108F5B22E93E601FED5A41935FBD89075B3D26C320F0ACADC57E4F928E8F685D69CA104
sha3_384: b192ff573971c4cf08edba45265817d8a96bba66f30c2c5cda2a32838ac3c913f309ed1e9ee8bdd90bb3f0312543544d
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-02-16 12:07:44

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: LTPEditor
FileVersion: 1.2.0.0
InternalName: LTPEditorNew.exe
LegalCopyright: Copyright © 2016
LegalTrademarks:
OriginalFilename: LTPEditorNew.exe
ProductName: LTPEditor
ProductVersion: 1.2.0.0
Assembly Version: 1.0.0.0

MSILHeracles.13500 also known as:

MicroWorld-eScanGen:Variant.MSILHeracles.13500
FireEyeGen:Variant.MSILHeracles.13500
McAfeeArtemis!3A403FA99A73
CylanceUnsafe
SangforPUP.Win32.Presenoker.mt
TrendMicro-HouseCallTROJ_GEN.R002H09JS21
BitDefenderGen:Variant.MSILHeracles.13500
Ad-AwareGen:Variant.MSILHeracles.13500
EmsisoftGen:Variant.MSILHeracles.13500 (B)
McAfee-GW-EditionArtemis
IkarusTrojan.MSIL2
JiangminTrojan.Generic.gtowe
MicrosoftBackdoor:Win32/Bladabindi!ml
GDataGen:Variant.MSILHeracles.13500
CynetMalicious (score: 100)
ALYacGen:Variant.MSILHeracles.13500
MAXmalware (ai score=87)
Cybereasonmalicious.99a73e

How to remove MSILHeracles.13500?

MSILHeracles.13500 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment