Malware

MSILPerseus.126449 information

Malware Removal

The MSILPerseus.126449 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSILPerseus.126449 virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine MSILPerseus.126449?


File Info:

name: BE41FFD3F14E27C9D2BA.mlw
path: /opt/CAPEv2/storage/binaries/f63079697c83b2bbbf3f8c83d06b84c56f5f7043fa0fdce27b22dee7dfe79acc
crc32: 220A2796
md5: be41ffd3f14e27c9d2bad1240065db0a
sha1: 91884f09db3ca86a3339b0be360bfeb16da50486
sha256: f63079697c83b2bbbf3f8c83d06b84c56f5f7043fa0fdce27b22dee7dfe79acc
sha512: 71209ef3774e594ea197666c09524aef41f2e48a11aab1a82fe4ab30cd44ad65319435d04ff1f51b8cc44426d9732a87685c2e391b6b8c007dfeb0af635d9f33
ssdeep: 768:+5EBO21R9ehn/SFAFtcXg2sHHTXmU9M+GLaNKJe5EBO21R9ehn/S:hshJbcXtKzXRnGLfBsh
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T191F30A2972E5CA56D8AC0B750916C17007F2AD25DE22EB0B7EC07F9F3EB37548A01B52
sha3_384: cf2f0198f194fea743794b897a62d95315b9137aeac50bd3a8497a48cdc6f05ee5d2f6ea9f1965ceddcd33adc25c5cba
ep_bytes: ff250020400000000000000000000000
timestamp: 2015-08-04 20:37:14

Version Info:

Translation: 0x0000 0x04b0
Comments: Boymoon
CompanyName: Boymoon
FileDescription: SuperVbsEncrypter
FileVersion: 1.0.0.0
InternalName: VbsEncrypter.exe
LegalCopyright: Copyright © Mr.Abood 2015
LegalTrademarks: Boymoon
OriginalFilename: VbsEncrypter.exe
ProductName: Boymoon
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

MSILPerseus.126449 also known as:

BkavW32.Common.B7E039C5
LionicTrojan.Win32.Perseus.4!c
MicroWorld-eScanGen:Variant.MSILPerseus.126449
FireEyeGen:Variant.MSILPerseus.126449
McAfeeArtemis!BE41FFD3F14E
SangforTrojan.Win32.Agent.V8e5
BitDefenderThetaGen:NN.ZemsilF.36662.kq0@aeJXIkp
APEXMalicious
BitDefenderGen:Variant.MSILPerseus.126449
AvastWin32:MalwareX-gen [Trj]
EmsisoftGen:Variant.MSILPerseus.126449 (B)
VIPREGen:Variant.MSILPerseus.126449
McAfee-GW-EditionArtemis
Trapminemalicious.moderate.ml.score
GDataGen:Variant.MSILPerseus.126449
MAXmalware (ai score=81)
ArcabitTrojan.MSILPerseus.D1EDF1
ALYacGen:Variant.MSILPerseus.126449
Cylanceunsafe
TrendMicro-HouseCallTROJ_GEN.R002H09H523
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:MalwareX-gen [Trj]
DeepInstinctMALICIOUS

How to remove MSILPerseus.126449?

MSILPerseus.126449 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment