Malware

What is “MSILHeracles.87297”?

Malware Removal

The MSILHeracles.87297 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSILHeracles.87297 virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine MSILHeracles.87297?


File Info:

name: 4C377189DB5913DCBF42.mlw
path: /opt/CAPEv2/storage/binaries/5fc8e4e18467c5cb8b9a3208ac89f3e4f04da8db381a404b1a1bb12e192c7b87
crc32: 82EC4E91
md5: 4c377189db5913dcbf42c368017912ee
sha1: 07243fad6ad8ed164912a6e2eb06ad73ea28735e
sha256: 5fc8e4e18467c5cb8b9a3208ac89f3e4f04da8db381a404b1a1bb12e192c7b87
sha512: 24e94a1eaee87b018618898b7ec296080c52ccf1bb74993eb14d9aee28a94a980f44ae4b6b7a08e638b1d6ba8402e7b6989014a6d3d6b59ec0207ff64b7b858f
ssdeep: 24576:FXoqUS2aWdtYPWbsNdWhSl5klbT6NAHCOjgk/dwSbLFv7fhnSFt:P+3hg6lbTNH3drXPn
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
tlsh: T1E3556C01B3E89F3BD19E47BED871092443F0E502A663EB0F6768D6D92DE27598D407A3
sha3_384: f0f7a5619e406870d80c2c91765bd2ed7ce72dcd1ccde56d5fabb96ade9240a963ef8f144dda30fb930c229431c3b3e7
ep_bytes: ff250020001000000000060401020809
timestamp: 2091-11-16 17:08:35

Version Info:

Translation: 0x0000 0x04b0
Comments: Reads and writes .NET assemblies and modules
CompanyName: 0xd4d
FileDescription: dnlib (thread safe)
FileVersion: 4.3.0.0
InternalName: dnlib.dll
LegalCopyright: Copyright (C) 2012-2019 de4dot@gmail.com
OriginalFilename: dnlib.dll
ProductName: dnlib
ProductVersion: 4.3.0
Assembly Version: 4.3.0.0

MSILHeracles.87297 also known as:

BkavW32.Common.0B725C6F
LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanGen:Variant.MSILHeracles.87297
FireEyeGen:Variant.MSILHeracles.87297
SkyhighArtemis!Trojan
McAfeeArtemis!4C377189DB59
Cylanceunsafe
K7AntiVirusTrojan ( 00566cd41 )
AlibabaTrojan:MSIL/Injector.67701506
K7GWTrojan ( 00566cd41 )
CrowdStrikewin/malicious_confidence_100% (W)
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of MSIL/Injector.UWS
CynetMalicious (score: 99)
BitDefenderGen:Variant.MSILHeracles.87297
AvastWin32:InjectorX-gen [Trj]
EmsisoftGen:Variant.MSILHeracles.87297 (B)
F-SecureTrojan.TR/Injector.dgjii
SophosMal/Generic-S
IkarusTrojan.MSIL.Injector
GDataGen:Variant.MSILHeracles.87297
GoogleDetected
AviraTR/Injector.dgjii
Antiy-AVLTrojan/Win32.Wacatac
ArcabitTrojan.MSILHeracles.D15501
MicrosoftTrojan:Win32/Wacatac.B!ml
VaristW32/ABRisk.RSCY-1721
ALYacGen:Variant.MSILHeracles.87297
MAXmalware (ai score=86)
MalwarebytesRiskWare.Agent
PandaTrj/Chgt.AD
TrendMicro-HouseCallTROJ_GEN.R002H09A424
MaxSecureTrojan.Malware.222663189.susgen
FortinetMSIL/Injector.UWS!tr
AVGWin32:InjectorX-gen [Trj]
DeepInstinctMALICIOUS

How to remove MSILHeracles.87297?

MSILHeracles.87297 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment