Malware

How to remove “MSILHeracles.31553 (B)”?

Malware Removal

The MSILHeracles.31553 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSILHeracles.31553 (B) virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine MSILHeracles.31553 (B)?


File Info:

name: AECEDED720778E277630.mlw
path: /opt/CAPEv2/storage/binaries/c04320cacca682e52e3b808015572ef7056404abd6594eef6dc8f1b82d2a1646
crc32: 8603899B
md5: aeceded720778e277630dfc08bacd02d
sha1: 4214b4d93546466d72692572cf5c9b7c5fbea970
sha256: c04320cacca682e52e3b808015572ef7056404abd6594eef6dc8f1b82d2a1646
sha512: d2745463becfcc316720e050590e3b2fbd1e9fd1066e3967afd05f9fd1bf902b1464c8e9e9099f7929f780819bc95ab1918eab34ffba9840988bdb91ed93ea7c
ssdeep: 384:YDJGIgGyG7gbCeFVkdO6XvkwW/DXZptYcFwVc03K:kJrgbQgbNMZ2/DXTtYcFwVc6K
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1DBA2C80077D50129F6FB9E7459B89210EF2FB582A835CA6E392C019DAF33741CE92B71
sha3_384: 3289dee4e47464f40edd677cacf4ebed287fbbfe596fa56f36d0cf76ac49e5543aac777b8223a4d18196a78ba5e7edea
ep_bytes: ff250020400000000000000000000000
timestamp: 2096-03-19 11:24:26

Version Info:

Translation: 0x0000 0x04b0
Comments: Public Spoofer [Source : https://github.com/VITAL9999l/spoofer]
CompanyName:
FileDescription: vitalcheats4u.com
FileVersion: 6.0
InternalName: GhostWareSpoof.exe
LegalCopyright: Copyright © VITAL9999 2021
LegalTrademarks:
OriginalFilename: GhostWareSpoof.exe
ProductName: italcheats4u.com Spoofer
ProductVersion: 6.0
Assembly Version: 6.0.0.0

MSILHeracles.31553 (B) also known as:

FireEyeGeneric.mg.aeceded720778e27
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
ALYacGen:Variant.MSILHeracles.31553
MalwarebytesTrojan.Downloader.MSIL.Generic
BitDefenderGen:Variant.MSILHeracles.31553
ESET-NOD32a variant of MSIL/TrojanDownloader.Agent.GMJ
APEXMalicious
CynetMalicious (score: 99)
MicroWorld-eScanGen:Variant.MSILHeracles.31553
Ad-AwareGen:Variant.MSILHeracles.31553
EmsisoftGen:Variant.MSILHeracles.31553 (B)
IkarusTrojan-Downloader.MSIL.Agent
GDataGen:Variant.MSILHeracles.31553
AviraHEUR/AGEN.1141121
MAXmalware (ai score=85)
ArcabitTrojan.MSILHeracles.D7B41
MicrosoftTrojan:Win32/Wacatac.B!ml
SentinelOneStatic AI – Suspicious PE
BitDefenderThetaGen:NN.ZemsilF.34084.bm0@aygJyGi
Cybereasonmalicious.720778
MaxSecureTrojan.Malware.300983.susgen

How to remove MSILHeracles.31553 (B)?

MSILHeracles.31553 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment