Malware

MSILPerseus.155063 information

Malware Removal

The MSILPerseus.155063 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSILPerseus.155063 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine MSILPerseus.155063?


File Info:

crc32: AD166C00
md5: 4b0b50dc5d7a976731ab4415b9a3de93
name: 4B0B50DC5D7A976731AB4415B9A3DE93.mlw
sha1: 933b7e81cd38704a0b08afc27aae6bb812bbe754
sha256: 1a1d7e22c804eb3c4b87dc7a53b54d5c81a0f5b4493a8f6219259cb5467e3829
sha512: a5eb2cc19f449dae1f3b3d3949d0050647c41a015323f1d21f2bef6c24be950cd6977f91bd3d146a6e725af82b006ee1ec3e276df00ab4962e1fa7f9109d3126
ssdeep: 12288:AUloLnUwB5fJn42iRxlintvP/fh0ydRO:pfQfdrNiyTO
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2018
Assembly Version: 1.0.0.0
InternalName: TEST@.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: TEST@
ProductVersion: 1.0.0.0
FileDescription: TEST@
OriginalFilename: TEST@.exe

MSILPerseus.155063 also known as:

K7AntiVirusTrojan ( 0051198c1 )
Elasticmalicious (high confidence)
DrWebBackDoor.Comet.3422
CynetMalicious (score: 100)
ALYacGen:Variant.MSILPerseus.155063
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
K7GWTrojan ( 0051198c1 )
Cybereasonmalicious.c5d7a9
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.JVO
APEXMalicious
AvastMSIL:GenMalicious-HA [Trj]
KasperskyHEUR:Trojan.MSIL.Agent.gen
BitDefenderGen:Variant.MSILPerseus.155063
NANO-AntivirusTrojan.Win32.Comet.feplee
MicroWorld-eScanGen:Variant.MSILPerseus.155063
TencentMsil.Trojan.Agent.Pbzf
Ad-AwareGen:Variant.MSILPerseus.155063
SophosMal/Generic-S
ComodoMalware@#1e71bkxig28k5
BitDefenderThetaGen:NN.ZemsilF.34236.Im0@aOldSjj
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.hh
FireEyeGeneric.mg.4b0b50dc5d7a9767
EmsisoftGen:Variant.MSILPerseus.155063 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.MSIL.Gen
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.26C78CE
MicrosoftBackdoor:Win32/Bladabindi!ml
ZoneAlarmHEUR:Trojan.MSIL.Agent.gen
GDataGen:Variant.MSILPerseus.155063
AhnLab-V3Win-Trojan/MSILKrypt14.Exp
McAfeeGeneric.dvr
MAXmalware (ai score=98)
PandaTrj/GdSda.A
YandexTrojan.Agent!KkMpefFndw4
IkarusTrojan.MSIL.Crypt
FortinetMSIL/Kryptik.JVO!tr
AVGMSIL:GenMalicious-HA [Trj]
Paloaltogeneric.ml

How to remove MSILPerseus.155063?

MSILPerseus.155063 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment