Malware

MSILHeracles.9383 information

Malware Removal

The MSILHeracles.9383 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSILHeracles.9383 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • .NET file is packed/obfuscated with Confuser
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine MSILHeracles.9383?


File Info:

name: 373FAE35F8018A436BD1.mlw
path: /opt/CAPEv2/storage/binaries/c53883b7c41d06a39cc1018b730abe1ec71776448876bc7ec01e409cdc35f7cd
crc32: 8A9588ED
md5: 373fae35f8018a436bd1c121628bc2ba
sha1: f027fd7dde5932109b4fde56429113f069194eae
sha256: c53883b7c41d06a39cc1018b730abe1ec71776448876bc7ec01e409cdc35f7cd
sha512: a27c4ee08133cf702c1c3eeca5a584465d2af0e2263dcb148dd81b8e94e1d68d05a94040eba5666ce604a5df57414cebe93aead06842cbfddc47bd8d64a94d95
ssdeep: 12288:V9Y0nGeNnS18YfPU+9ms/g7UKCi+VcWUAGAIU0+x10IYFD/FmBm5QeLbOfHC:V9LnPnS18Yf5cfIY/cUQggC
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BCF4235C39C51E1BEBF406FFA81767002AB1DD915798D32BB82D2BD670EE6B50201793
sha3_384: 3c9b804cfb67cb31f21ad90d8953f8737308f7138c0d2d2dd5e093b8e0f7b86cc131ccdab5bca14487ea9dc4e3aeee87
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-01-08 05:53:42

Version Info:

Translation: 0x0000 0x04b0
CompanyName: qlubicwin7
FileDescription: WpfApplication4
FileVersion: 1.0.0.0
InternalName: WpfApplication4.exe
LegalCopyright: Copyright @ qlubicwin7 2021
OriginalFilename: WpfApplication4.exe
ProductName: WpfApplication4
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

MSILHeracles.9383 also known as:

BkavW32.AIDetectNet.01
MicroWorld-eScanGen:Variant.MSILHeracles.9383
FireEyeGeneric.mg.373fae35f8018a43
ALYacGen:Variant.MSILHeracles.9383
VIPREGen:Variant.MSILHeracles.9383
K7AntiVirusTrojan ( 0056befe1 )
K7GWTrojan ( 0056befe1 )
Cybereasonmalicious.5f8018
CyrenW32/MSIL_Kryptik.DCG.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Kryptik.XFA
APEXMalicious
KasperskyHEUR:Trojan.MSIL.Crypt.gen
BitDefenderGen:Variant.MSILHeracles.9383
AvastWin32:Trojan-gen
Ad-AwareGen:Variant.MSILHeracles.9383
EmsisoftGen:Variant.MSILHeracles.9383 (B)
F-SecureHeuristic.HEUR/AGEN.1216802
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
Trapminemalicious.moderate.ml.score
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.MSILHeracles.9383
AviraHEUR/AGEN.1216802
ArcabitTrojan.MSILHeracles.D24A7
MicrosoftBackdoor:Win32/Bladabindi!ml
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.RL_Generic.C4144811
McAfeeArtemis!373FAE35F801
MAXmalware (ai score=84)
MalwarebytesTrojan.Crypt.MSIL
RisingTrojan.Generic/MSIL@AI.100 (RDM.MSIL:JWSjOH0CckspyLAOKJOOeQ)
IkarusTrojan.MSIL.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Crypt.XFA!tr
BitDefenderThetaGen:NN.ZemsilF.34786.Sm0@aq!98Ce
AVGWin32:Trojan-gen
CrowdStrikewin/malicious_confidence_70% (W)

How to remove MSILHeracles.9383?

MSILHeracles.9383 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment