Malware

What is “MSILHeracles.13876 (B)”?

Malware Removal

The MSILHeracles.13876 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSILHeracles.13876 (B) virus can do?

  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine MSILHeracles.13876 (B)?


File Info:

crc32: 2E24E7D9
md5: 2528f2e199a11008a4efaa70191f15fc
name: 2528F2E199A11008A4EFAA70191F15FC.mlw
sha1: 0d8bbbda570215554d7111228c05101f5d106e6d
sha256: be0c9049c962fe67ab2b15bc85c934f4bc0a2828a98b679eccfb211611356606
sha512: 131c9894bba36c1712919abdf3a8bfa728be6437700e579a10268bb7882863222fdd72bf482d0bcbf3b4366a030fc9b84df92b40c3cad35979daa97d4ddde2d8
ssdeep: 3072:2A1ON/Ny8AQWHbsOlngn0/7L15il28uoZ1s6KAQxdbVrn87c+3nVcXODCQOz32R9:ON1mQW7Xngn0zL1alVM2R9
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2021
Assembly Version: 1.0.0.0
InternalName: KaptanS2.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: KaptanS2
ProductVersion: 1.0.0.0
FileDescription: KaptanS2
OriginalFilename: KaptanS2.exe

MSILHeracles.13876 (B) also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.MSILHeracles.13876
FireEyeGeneric.mg.2528f2e199a11008
McAfeeArtemis!2528F2E199A1
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderGen:Variant.MSILHeracles.13876
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
KasperskyUDS:DangerousObject.Multi.Generic
AlibabaTrojan:MSIL/Kryptik.2dbfa7e5
RisingTrojan.Kryptik!8.8 (CLOUD)
Ad-AwareGen:Variant.MSILHeracles.13876
EmsisoftGen:Variant.MSILHeracles.13876 (B)
F-SecureTrojan.TR/ATRAPS.Gen
McAfee-GW-EditionArtemis!Trojan
SophosML/PE-A
IkarusTrojan.MSIL.CryptoObfuscator
eGambitUnsafe.AI_Score_99%
AviraTR/ATRAPS.Gen
MAXmalware (ai score=81)
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.MSILHeracles.D3634
ZoneAlarmUDS:DangerousObject.Multi.Generic
GDataGen:Variant.MSILHeracles.13876
CynetMalicious (score: 90)
AhnLab-V3Malware/Win32.RL_Generic.C4345714
BitDefenderThetaGen:NN.ZemsilF.34590.mm2@aqnpLSc
ALYacGen:Variant.MSILHeracles.13876
MalwarebytesBackdoor.Bladabindi
ESET-NOD32a variant of MSIL/Kryptik.IRC
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Kryptik.IRC!tr
AVGMSIL:GenMalicious-BF [Trj]
Cybereasonmalicious.a57021
AvastMSIL:GenMalicious-BF [Trj]
Qihoo-360Win32/Trojan.Generic.HwMAcJcA

How to remove MSILHeracles.13876 (B)?

MSILHeracles.13876 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment