Malware

How to remove “MSILPerseus.212408”?

Malware Removal

The MSILPerseus.212408 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSILPerseus.212408 virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid

How to determine MSILPerseus.212408?


File Info:

name: 572F573B4ED5C55054B3.mlw
path: /opt/CAPEv2/storage/binaries/54c8f5791e40a6b8c53e221d3a3908343c5f819a4b4d68c6f560519925902130
crc32: 49D327EE
md5: 572f573b4ed5c55054b3182c87d9464b
sha1: ae57222862a94bdf5e097910cd68a51c7c410cea
sha256: 54c8f5791e40a6b8c53e221d3a3908343c5f819a4b4d68c6f560519925902130
sha512: e07bc430508468e310f046be1c4204ddb1d0138b478182fb1d4eed8621873aa4730c31214bae386a9dc5b35d7dbf65a57d462ed4dbfea8a19d61837a95f5e6cb
ssdeep: 768:Yfn6f2UGsdbFYcl5KPeYgyoqV4ovOADq/OoOolqIY8o7AM/:Y/6uhsdr5KEMV4oAZOYbny
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1DA13CF0053A98239DFE90B756D3193240F76CD5A5422EE1F7C8CA69A6FB73C48363762
sha3_384: bc322f5ad700db662f230c8017dabdec6d6fdcdf65f797e4db6d7820cbb3fbd452f4f8e37fe2fd082c04e6f5a9ad520b
ep_bytes: ff250020400000000000000000000000
timestamp: 2011-08-24 12:13:46

Version Info:

Translation: 0x0000 0x04b0
Comments: Windows Media Player
CompanyName: Microsoft Corporation
FileDescription: Windows Media Player
FileVersion: 1.0.0.0
InternalName: tabla.exe
LegalCopyright: Copyright © Microsoft 2001
LegalTrademarks: Microsoft Corporation
OriginalFilename: tabla.exe
ProductName: System Analist
ProductVersion: 1.0.0.0
Assembly Version: 1.3.0.0

MSILPerseus.212408 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.MSILPerseus.212408
ALYacGen:Variant.MSILPerseus.212408
CylanceUnsafe
ZillyaTrojan.Genome.Win32.163078
SangforTrojan.Win32.Save.a
AlibabaTrojan:MSIL/Mdrop.fc7bce76
CrowdStrikewin/malicious_confidence_100% (W)
VirITTrojan.Win32.Generic.AIII
SymantecTrojan.Gen.2
ESET-NOD32a variant of MSIL/TrojanDropper.Agent.BBQ
APEXMalicious
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.MSILPerseus.212408
NANO-AntivirusTrojan.Win32.MdropBL.dkfwcf
AvastMSIL:KeyLogger-AQ [Spy]
TencentWin32.Trojan.Generic.Uwhl
Ad-AwareGen:Variant.MSILPerseus.212408
EmsisoftGen:Variant.MSILPerseus.212408 (B)
ComodoMalware@#1ciqj3vemndeh
DrWebTrojan.Click2.16425
VIPREGen:Variant.MSILPerseus.212408
TrendMicroTROJ_GEN.R067C0PIL22
McAfee-GW-EditionGenericRXJP-ZA!572F573B4ED5
FireEyeGeneric.mg.572f573b4ed5c550
SophosML/PE-A + Mal/Mdrop-BL
SentinelOneStatic AI – Suspicious PE
GDataGen:Variant.MSILPerseus.212408
JiangminTrojanDropper.MSIL.exv
WebrootW32.Malware.Gen
GoogleDetected
AviraTR/Dropper.Gen
MAXmalware (ai score=100)
Antiy-AVLTrojan/Generic.ASMalwS.5E
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
Acronissuspicious
McAfeeGenericRXJP-ZA!572F573B4ED5
TrendMicro-HouseCallTROJ_GEN.R067C0PIL22
RisingDropper.Agent!8.2F (CLOUD)
IkarusTrojan-Dropper.MSIL.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Agent.LF!tr
BitDefenderThetaGen:NN.ZemsilF.34698.cq2@amgoEYn
AVGMSIL:KeyLogger-AQ [Spy]
Cybereasonmalicious.b4ed5c
PandaGeneric Malware

How to remove MSILPerseus.212408?

MSILPerseus.212408 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment