Malware

MSILPerseus.234638 (file analysis)

Malware Removal

The MSILPerseus.234638 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSILPerseus.234638 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine MSILPerseus.234638?


File Info:

crc32: 46789730
md5: c5f7eee4b54268df5d53e0170fe08cd5
name: C5F7EEE4B54268DF5D53E0170FE08CD5.mlw
sha1: d20871f123eba87390e9888630a27f8c4d5f851d
sha256: bc87e613b9ca8b5835afc3d936e65d7b5469c99080ee01e0a33717c47fe38bc3
sha512: 51011dbb88196a541f8406a1af8703ccd716caa22aa94f6aa3e035624e0ea49bf092c14b0b2bab63c4501931c593afefc349341263fbf0a41364b5a3f3bef0f1
ssdeep: 3072:KjWaECDq+PBELSbb8GiJQZAMqvaaIIKMXM94v7XL41ou:WWQm+PB6gRDMvaaH7W641o
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 Microsoft 2012
Assembly Version: 1.0.0.0
InternalName: locker.exe
FileVersion: 1.0.0.0
CompanyName: Microsoft
ProductName: locker
ProductVersion: 1.0.0.0
FileDescription: locker
OriginalFilename: locker.exe

MSILPerseus.234638 also known as:

LionicTrojan.Win32.Blocker.j!c
DrWebTrojan.KillProc.20163
CynetMalicious (score: 99)
ALYacGen:Variant.MSILPerseus.234638
CylanceUnsafe
ZillyaTrojan.Blocker.Win32.1417
CrowdStrikewin/malicious_confidence_80% (D)
Cybereasonmalicious.4b5426
SymantecML.Attribute.HighConfidence
ESET-NOD32MSIL/LockScreen.AK
APEXMalicious
AvastMSIL:Agent-YU [Trj]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.MSILPerseus.234638
NANO-AntivirusTrojan.Win32.Blocker.bckgbu
MicroWorld-eScanGen:Variant.MSILPerseus.234638
TencentWin32.Trojan.Blocker.cwzf
Ad-AwareGen:Variant.MSILPerseus.234638
SophosMal/Generic-S
ComodoMalware@#26oiyl8f8x9ct
BitDefenderThetaGen:NN.ZemsilF.34050.lm0@ae0@d!f
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
FireEyeGeneric.mg.c5f7eee4b54268df
EmsisoftGen:Variant.MSILPerseus.234638 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Malware.Gen
AviraTR/LockScreen.BM
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.23D16CF
MicrosoftBackdoor:Win32/Bladabindi!ml
GDataGen:Variant.MSILPerseus.234638
McAfeeArtemis!C5F7EEE4B542
MAXmalware (ai score=81)
VBA32Trojan.MSIL
PandaTrj/CI.A
IkarusVirus.LockScreen
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Blocker.AK!tr
AVGMSIL:Agent-YU [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.PornoBlocker.HgAASQ0A

How to remove MSILPerseus.234638?

MSILPerseus.234638 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment