Malware

MSILPerseus.227349 (B) (file analysis)

Malware Removal

The MSILPerseus.227349 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSILPerseus.227349 (B) virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous binary characteristics
  • Binary compilation timestomping detected

How to determine MSILPerseus.227349 (B)?


File Info:

name: 2B768CA5C86292BB9FCE.mlw
path: /opt/CAPEv2/storage/binaries/9787e64299d0ccda3dfdc6bb5ade7a14648fc0130e8749c8a7fe90e981434855
crc32: 3A2EFE77
md5: 2b768ca5c86292bb9fce5d407669b6f0
sha1: e248f31ac9f16b91352c2ef74ee80640e680d4e4
sha256: 9787e64299d0ccda3dfdc6bb5ade7a14648fc0130e8749c8a7fe90e981434855
sha512: 0adeff96fc42e887b5a99b1aedf29c58b8252499edb7ee2c0dfaf3c1288ea5ec13fe95fa1f06392fcefe3d00c87419c23d448b9a653bb66ab350607bd7721674
ssdeep: 196608:zz16gBrdxu/XmDZiF0tuiDrK2k/yCkWt5n:zz1rBdo/XmliybD+ZK6N
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1C4B63B41E2A7D014D061D3BF6966EBA1C45978304B34FFCB6E88AD9906637C3F471B2A
sha3_384: 405187f5a34aa792f0a80e72ae5993b14a58d3be21fa48b8e1cf9f0df92f27ea0282b66a9ccc588578082946e26d8173
ep_bytes: ff250020400000000000000000000000
timestamp: 2092-06-25 22:18:48

Version Info:

CompanyName: Adobe Inc.
FileDescription: Adobe Installer
FileVersion: 5.3.1.470
InternalName: Adobe Installer
LegalCopyright: © 2020 Adobe. All rights reserved.
OriginalFilename: Adobe Installer
ProductName: Adobe Installer
ProductVersion: 5.3.1.470
Translation: 0x0409 0x04b0

MSILPerseus.227349 (B) also known as:

LionicTrojan.MSIL.Reline.i!c
Elasticmalicious (high confidence)
DrWebTrojan.InjectNET.14
CynetMalicious (score: 99)
FireEyeGeneric.mg.2b768ca5c86292bb
CAT-QuickHealTrojan.YakbeexMSIL.ZZ4
McAfeeGenericRXMP-JA!2B768CA5C862
CylanceUnsafe
ZillyaDropper.Agent.Win32.443433
SangforTrojan.Win32.Wacatac.D9
K7AntiVirusTrojan ( 0050dbf01 )
AlibabaTrojan:Win32/NanoCore.ali2000019
K7GWTrojan ( 0050dbf01 )
Cybereasonmalicious.5c8629
BitDefenderThetaGen:NN.ZemsilF.34212.@p0@aKfX2yai
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/TrojanDropper.Agent.CZW
Paloaltogeneric.ml
KasperskyHEUR:Trojan-PSW.MSIL.Reline.gen
BitDefenderGen:Variant.MSILPerseus.227349
NANO-AntivirusTrojan.Win32.Reline.ilvldd
MicroWorld-eScanGen:Variant.MSILPerseus.227349
AvastWin32:PWSX-gen [Trj]
TencentMsil.Trojan-qqpass.Qqrob.Hsss
Ad-AwareGen:Variant.MSILPerseus.227349
SophosMal/Generic-S
F-SecureHeuristic.HEUR/AGEN.1216690
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericRXMP-JA!2B768CA5C862
EmsisoftGen:Variant.MSILPerseus.227349 (B)
IkarusTrojan-Dropper.MSIL.Agent
GDataGen:Variant.MSILPerseus.227349
JiangminTrojan.PSW.MSIL.bgfo
AviraHEUR/AGEN.1216690
Antiy-AVLTrojan[Dropper]/MSIL.Agent
ArcabitTrojan.MSILPerseus.D37815
ZoneAlarmHEUR:Trojan-PSW.MSIL.Reline.gen
MicrosoftTrojan:Win32/Tnega!ml
AhnLab-V3Trojan/Win32.RL_Agent.C4225736
VBA32TScope.Trojan.MSIL
MAXmalware (ai score=83)
MalwarebytesSpyware.RedLineStealer.Drop
APEXMalicious
YandexTrojan.Igent.bVgIui.13
SentinelOneStatic AI – Malicious PE
FortinetMSIL/Agent.CZW!tr
AVGWin32:PWSX-gen [Trj]
PandaTrj/GdSda.A
MaxSecureTrojan.Malware.95853585.susgen

How to remove MSILPerseus.227349 (B)?

MSILPerseus.227349 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment