Malware

MSILPerseus.144905 (file analysis)

Malware Removal

The MSILPerseus.144905 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSILPerseus.144905 virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine MSILPerseus.144905?


File Info:

crc32: 8840FBD6
md5: fb9592ee7a865a3b258ca94922c306d9
name: FB9592EE7A865A3B258CA94922C306D9.mlw
sha1: 2126830d1ffacc9b305c6cc7b410f36d70276229
sha256: 02f61aa7c1bcdce2c53b58c6a81cc00a0f73562a4b990d29ec95d69562749ad7
sha512: 4fdac0ab740e97d2e45cec58ef8348565d6b53520299a8e9299d3fd52fb6cccd23e40b6ff2b05a10512466eb9d84ab53feaeec97f57c606b42ec36b7f28dd954
ssdeep: 3072:xwZL84zfeqI/fFcku8Zb8Ku/HbwpmITP20VRrKw0rVGTobdR1jV0rZ1hduT:xwZpT1UfFcr87uz6mIrN0rVAob7H6jd
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
InternalName: kernel32
FileVersion: 6.1.7601.24000 (win7sp1_ldr.171231-1547)
CompanyName: Microsoft Corporation
ProductName: Microsoftxae Windowsxae Operating System
ProductVersion: 6.1.7601.24000
FileDescription: Windows NT BASE API Client DLL
OriginalFilename: kernel32
Translation: 0x0409 0x04b0

MSILPerseus.144905 also known as:

K7AntiVirusTrojan ( 004b89791 )
LionicTrojan.MSIL.Generic.l!c
Elasticmalicious (high confidence)
ALYacGen:Variant.MSILPerseus.144905
CylanceUnsafe
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 004b89791 )
Cybereasonmalicious.e7a865
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.CKG
APEXMalicious
AvastWin32:RATX-gen [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Spy.MSIL.Generic
BitDefenderGen:Variant.MSILPerseus.144905
NANO-AntivirusTrojan.Win32.Confuser.exwzxa
MicroWorld-eScanGen:Variant.MSILPerseus.144905
TencentMsil.Trojan-spy.Generic.Efuj
Ad-AwareGen:Variant.MSILPerseus.144905
SophosGeneric ML PUA (PUA)
BitDefenderThetaGen:NN.ZemsilF.34266.lm0@aKuNK6fi
VIPRETrojan.Win32.Generic!BT
FireEyeGeneric.mg.fb9592ee7a865a3b
EmsisoftGen:Variant.MSILPerseus.144905 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1109355
eGambitUnsafe.AI_Score_100%
MicrosoftBackdoor:Win32/Bladabindi!ml
ArcabitTrojan.MSILPerseus.D23609
GDataGen:Variant.MSILPerseus.144905
AhnLab-V3Trojan/Win32.Tiggre.R224416
MAXmalware (ai score=88)
MalwarebytesTrojan.Injector
IkarusTrojan.MSIL.Confuser
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Generic!tr
AVGWin32:RATX-gen [Trj]
Paloaltogeneric.ml

How to remove MSILPerseus.144905?

MSILPerseus.144905 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment