Malware

MSILPerseus.26960 malicious file

Malware Removal

The MSILPerseus.26960 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSILPerseus.26960 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Uses Windows utilities for basic functionality
  • Exhibits behavior characteristic of iSpy Keylogger
  • Uses suspicious command line tools or Windows utilities

How to determine MSILPerseus.26960?


File Info:

crc32: BA07C08E
md5: 4bdd49e8e4648a14aaa64d4b04954f55
name: 4BDD49E8E4648A14AAA64D4B04954F55.mlw
sha1: a3df7516190ccd022b7058bb6c5214216f0956bb
sha256: 7c28f5b359a9330a23022a72092f7d1d849888540b8c5950677af6b18d8347e0
sha512: 52c84b582d4659ad1639a1e64ea0625a6d084e359024d5f9a33ad2ef71cb9df9bb97482d59705467d1f7f90aa6bbbdbc9f550c5c144bbad429ae1f3b046c5334
ssdeep: 3072:ZqGJfrw8TC5M81hK+zE9wS9CTSL5mRxUWhDkdo5kvGVrTSL9E/Q:ZqGxpoD189Mi8w4kcrw9
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: RTD Soft
Assembly Version: 1.0.0.9
InternalName: slender.exe
FileVersion: 5.2.0.9
CompanyName: RTD Soft
LegalTrademarks: RTD Soft
Comments: seo mon
ProductName: real tool
ProductVersion: 5.2.0.9
FileDescription: real tool
OriginalFilename: slender.exe

MSILPerseus.26960 also known as:

K7AntiVirusTrojan ( 004cb1481 )
Elasticmalicious (high confidence)
DrWebTrojan.KillProc.18881
CynetMalicious (score: 85)
ALYacGen:Variant.MSILPerseus.26960
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
K7GWTrojan ( 004cb1481 )
Cybereasonmalicious.8e4648
ESET-NOD32a variant of MSIL/LockScreen.AE
APEXMalicious
AvastWin32:Trojan-gen
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.MSILPerseus.26960
NANO-AntivirusTrojan.Win32.Blocker.dchdcm
MicroWorld-eScanGen:Variant.MSILPerseus.26960
TencentWin32.Trojan.Blocker.Pgxh
Ad-AwareGen:Variant.MSILPerseus.26960
SophosMal/Generic-S
ComodoMalware@#3jeb9kp5si0rl
BitDefenderThetaGen:NN.ZemsilF.34608.mm0@a8IJDRd
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
FireEyeGen:Variant.MSILPerseus.26960
EmsisoftGen:Variant.MSILPerseus.26960 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1105143
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Rimod
GDataGen:Variant.MSILPerseus.26960
AhnLab-V3Trojan/Win32.Blocker.C207369
McAfeeGenericRXCN-DB!4BDD49E8E464
MAXmalware (ai score=82)
VBA32Hoax.Blocker
MalwarebytesMachineLearning/Anomalous.100%
PandaTrj/CI.A
RisingRansom.Blocker!8.12A (CLOUD)
YandexTrojan.Blocker!3E3qSf27yPc
IkarusTrojan-Ransom.Blocker
FortinetW32/Blocker.BGET!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.ccb

How to remove MSILPerseus.26960?

MSILPerseus.26960 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment