Malware

MSILHeracles.4377 removal

Malware Removal

The MSILHeracles.4377 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSILHeracles.4377 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Uses Windows utilities for basic functionality
  • Sniffs keystrokes
  • A process was set to shut the system down when terminated
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself

How to determine MSILHeracles.4377?


File Info:

crc32: 6DC0A10E
md5: 4a2c1d6d5f04217068ebbc299b3628be
name: 4A2C1D6D5F04217068EBBC299B3628BE.mlw
sha1: 2292471291d58ead5f277221ba10c44fe6699f3a
sha256: d85eb5956ea6f338b948ec8107fd7604941abe3cfdb7247c48401d9a6ec091a8
sha512: 5f288d02ada45fdd697ec45bfa032df302bc54b3086ca4143206cd9bad8e6a8e35e6e33e48c546847e776fd78e46af157020c00949d2c9bb062141f7456890b0
ssdeep: 3072:AwwBDGbIALtgQ1RiVMEaWEVsINup2lhwcCMpclZLiZbl8baRYX2NCazcRu7AlQH:btSIVsIN9lh3CFKb8J9W41m2d6OC
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2017
Assembly Version: 1.0.0.0
InternalName: Host Process for Windows Tasks.exe
FileVersion: 1.0.0.0
ProductName: Host Process for Windows Tasks
ProductVersion: 1.0.0.0
FileDescription: Host Process for Windows Tasks
OriginalFilename: Host Process for Windows Tasks.exe

MSILHeracles.4377 also known as:

K7AntiVirusTrojan ( 005103091 )
CynetMalicious (score: 85)
ALYacGen:Variant.MSILHeracles.4377
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 005103091 )
Cybereasonmalicious.d5f042
SymantecTrojan.Gen.2
ESET-NOD32a variant of MSIL/Kryptik.JND
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Blocker.kdaf
BitDefenderGen:Variant.MSILHeracles.4377
NANO-AntivirusTrojan.Win32.Agent.elgxdg
MicroWorld-eScanGen:Variant.MSILHeracles.4377
TencentWin32.Trojan.Blocker.Pcjc
Ad-AwareGen:Variant.MSILHeracles.4377
SophosMal/Generic-S
ComodoMalware@#49zypvy8866j
BitDefenderThetaGen:NN.ZemsilF.34670.Dq0@aS1E5Dd
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionPacked-MG!4A2C1D6D5F04
FireEyeGeneric.mg.4a2c1d6d5f042170
EmsisoftGen:Variant.MSILHeracles.4377 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1101158
eGambitUnsafe.AI_Score_99%
MicrosoftBackdoor:MSIL/Bladabindi
AegisLabTrojan.Win32.Blocker.j!c
ZoneAlarmTrojan-Ransom.Win32.Blocker.kdaf
GDataGen:Variant.MSILHeracles.4377
AhnLab-V3Win-Trojan/MSILKrypt14.Exp
McAfeePacked-MG!4A2C1D6D5F04
MAXmalware (ai score=86)
MalwarebytesBladabindi.Backdoor.Njrat.DDS
PandaTrj/GdSda.A
RisingRansom.Blocker!8.12A (CLOUD)
YandexTrojan.Blocker!Zt7QjSCxWWo
IkarusWorm.MSIL.Bladabindi
FortinetMSIL/Kryptik.PGR!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Blocker.HwMAEpsA

How to remove MSILHeracles.4377?

MSILHeracles.4377 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment