Malware

MSILPerseus.211574 (file analysis)

Malware Removal

The MSILPerseus.211574 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSILPerseus.211574 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine MSILPerseus.211574?


File Info:

name: D1030184711310725A60.mlw
path: /opt/CAPEv2/storage/binaries/73cd2bde631726e737fcdbd54b596ff3c39acce30caaf4181a2f32277955dd08
crc32: C2E1366B
md5: d1030184711310725a604d31173362cc
sha1: dc4b1c4b10361e322a6226f3f1e0f1121f0a9593
sha256: 73cd2bde631726e737fcdbd54b596ff3c39acce30caaf4181a2f32277955dd08
sha512: 3effff70c9f576406fa231c516c8917c7019675a253bd9bdfef88e7f048c1f77b77229795dbb4f83760f08fff5323e0b854e54a8b9730003865996f970acbc94
ssdeep: 49152:bGWZxcMMVSD5EJ5wIvrKbG+Z4YMZHncxvONaayPcegZjMSpTs:b7ZiVRNmbXZURcVONpUceHSpTs
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T15CD5023487E85A9BC92F0277A061C715E3FDC8362FD7A39BA85674F81D97359E802063
sha3_384: c1a5ec353abfb8f89b836b2f53928cd0e2a4a63a61e289df524d1f06a84a34f8225b957a4a8ae17697b74d1dc9861680
ep_bytes: ff250020400000000000000000000000
timestamp: 2019-12-06 20:35:18

Version Info:

Translation: 0x0000 0x04b0
Comments: iAmazon
CompanyName: Aiden
FileDescription: iAmazon
FileVersion: 1.0.0.0
InternalName: iAmazon.exe
LegalCopyright: Copyright © Aiden 2019
LegalTrademarks: RegularSoftware
OriginalFilename: iAmazon.exe
ProductName: iAmazon
ProductVersion: 1.0.0.0
Assembly Version: 10.0.0.0

MSILPerseus.211574 also known as:

LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanGen:Variant.MSILPerseus.211574
FireEyeGen:Variant.MSILPerseus.211574
ALYacGen:Variant.MSILPerseus.211574
CylanceUnsafe
SangforTrojan.Win32.Occamy.C73
BitDefenderThetaGen:NN.ZemsilCO.34084.Wo0@aKuk6Op
CyrenW32/Trojan.OFLE-1401
SymantecML.Attribute.HighConfidence
Paloaltogeneric.ml
ClamAVWin.Malware.Genkryptik-6860402-0
BitDefenderGen:Variant.MSILPerseus.211574
Ad-AwareGen:Variant.MSILPerseus.211574
EmsisoftGen:Variant.MSILPerseus.211574 (B)
McAfee-GW-EditionBehavesLike.Win32.Generic.vc
GDataGen:Variant.MSILPerseus.211574
WebrootW32.Malware.Gen
MAXmalware (ai score=85)
APEXMalicious
MicrosoftBackdoor:Win32/Bladabindi!ml
McAfeeArtemis!D10301847113
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.77241070.susgen
Cybereasonmalicious.471131

How to remove MSILPerseus.211574?

MSILPerseus.211574 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment