Malware

About “MSILHeracles.25887 (B)” infection

Malware Removal

The MSILHeracles.25887 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSILHeracles.25887 (B) virus can do?

  • Network activity detected but not expressed in API logs

How to determine MSILHeracles.25887 (B)?


File Info:

crc32: 8F69B6FB
md5: 2fde71a8f29b35cfe910b9fffd6b6334
name: 2FDE71A8F29B35CFE910B9FFFD6B6334.mlw
sha1: 61eb3ac76a3c80ca2724b15c15e434afa6128b2e
sha256: 8714ff5b3eb60504a5b6a93fdfd7264e520cc6807fc57b87b712c9a000176319
sha512: 2dbfb1e140814bd7b76ca3b98bcf5eaeeafc1f72b6a37ebbf23a14e54c145ce86d1996fe9d0e5221ca1aeb313d0b8e5b43f10c422f598ec8754a8d8f69666378
ssdeep: 12288:PLGUSX1tF84DtPASSVdYiO5GpS4u6C5oWpf0y3k0Vb/AElj8iDxLBYR1p2Z3+Xf:PU+UDUCSin7fmHLU1IUOP68E
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2019
Assembly Version: 1.0.0.0
InternalName: xoT6.exe
FileVersion: 1.0.0.0
CompanyName: Lukas Kurz
LegalTrademarks: Lukas Kurz
Comments: Plotter
ProductName: Plotter
ProductVersion: 1.0.0.0
FileDescription: Plotter
OriginalFilename: xoT6.exe

MSILHeracles.25887 (B) also known as:

K7AntiVirusTrojan ( 0058222e1 )
Elasticmalicious (high confidence)
DrWebBackDoor.SpyBotNET.25
ALYacGen:Variant.MSILHeracles.25887
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Kryptik.ali2000016
K7GWTrojan ( 0058222e1 )
CyrenW32/MSIL_Kryptik.CPN.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.ACSZ
APEXMalicious
AvastWin32:PWSX-gen [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-PSW.MSIL.Agensla.gen
BitDefenderGen:Variant.MSILHeracles.25887
MicroWorld-eScanGen:Variant.MSILHeracles.25887
TencentMsil.Trojan.Msilheracles.Hwnm
Ad-AwareGen:Variant.MSILHeracles.25887
SophosMal/Generic-S
TrendMicroTROJ_FRS.0NA103IA21
McAfee-GW-EditionBehavesLike.Win32.Generic.dh
FireEyeGeneric.mg.2fde71a8f29b35cf
EmsisoftGen:Variant.MSILHeracles.25887 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1143831
MicrosoftTrojan:Win32/AgentTesla!ml
GDataMSIL.Trojan.BSE.1TR0FB2
AhnLab-V3Trojan/Win.Generic.C4629680
McAfeeAgentTesla-FDBQ!2FDE71A8F29B
MAXmalware (ai score=100)
VBA32Malware-Cryptor.MSIL.AgentTesla.Heur
MalwarebytesSpyware.TelegramBot
PandaTrj/GdSda.A
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/GenKryptik.FKFV!tr
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml

How to remove MSILHeracles.25887 (B)?

MSILHeracles.25887 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment