Malware

MSILHeracles.3710 malicious file

Malware Removal

The MSILHeracles.3710 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSILHeracles.3710 virus can do?

  • Dynamic (imported) function loading detected
  • .NET file is packed/obfuscated with Confuser
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine MSILHeracles.3710?


File Info:

name: BE9A82F1A4128D31B9F5.mlw
path: /opt/CAPEv2/storage/binaries/e8a283b4d853e49957f69056ffcd5faf4bcf13e71d559325d35117b5b5a8a736
crc32: 03A47617
md5: be9a82f1a4128d31b9f590f212c9be76
sha1: e35825446bc7825ba38943629f43ba001fd17bb0
sha256: e8a283b4d853e49957f69056ffcd5faf4bcf13e71d559325d35117b5b5a8a736
sha512: ed1869795ff154edec94d94a0ce894bfe98336e10981b03f0edbeb3b3457e73149694fd562fb0f6efbdc428bc354cea3404e12790788c32a71321d4a3fdc2a43
ssdeep: 24576:Ulq0AId5MK4Ct6lH5wx0xHJAuAuAbfqU2biFw9PoGiiBGcNss9sZQW:iqvId5MXCtsNjECxbOMPNiiIcSysC
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1B0653306226F0680F36C703BE765E89716EDBB7A442EF36D2C66150F39F0942C65B91B
sha3_384: ab85333a7a597f41884a2b8f58dc5d983f489ec3dc7e66ca93933fbff1788cc3a821c47b6d0829059962bb70d1421041
ep_bytes: ff250020400000000000000000000000
timestamp: 2020-11-18 14:22:26

Version Info:

Translation: 0x0000 0x04b0
Comments: Eternity Aion - Steel Cavalry
CompanyName: Eternity Aion
FileDescription: Eternity Aion
FileVersion: 1.0.0.0
InternalName: Aion Launcher.exe
LegalCopyright: Eternity Aion © 2020
LegalTrademarks:
OriginalFilename: Aion Launcher.exe
ProductName: Eternity Aion
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

MSILHeracles.3710 also known as:

LionicTrojan.Win32.Malicious.4!c
MicroWorld-eScanGen:Variant.MSILHeracles.3710
FireEyeGeneric.mg.be9a82f1a4128d31
McAfeeArtemis!BE9A82F1A412
MalwarebytesMachineLearning/Anomalous.97%
SangforSuspicious.Win32.MSILHeracles.3710
Cybereasonmalicious.1a4128
SymantecML.Attribute.HighConfidence
Paloaltogeneric.ml
BitDefenderGen:Variant.MSILHeracles.3710
Ad-AwareGen:Variant.MSILHeracles.3710
EmsisoftGen:Variant.MSILHeracles.3710 (B)
SophosGeneric ML PUA (PUA)
GDataGen:Variant.MSILHeracles.3710
GridinsoftRansom.Win32.Wacatac.sa
ArcabitTrojan.MSILHeracles.DE7E
CynetMalicious (score: 100)
BitDefenderThetaGen:NN.ZemsilF.34212.xn0@aeq8wum
ALYacGen:Variant.MSILHeracles.3710
MAXmalware (ai score=87)
RisingMalware.Obfus/MSIL@AI.100 (RDM.MSIL:K7b+AdxtwkvCCF/NFwf6Pg)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.109827155.susgen
CrowdStrikewin/malicious_confidence_60% (D)

How to remove MSILHeracles.3710?

MSILHeracles.3710 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment