Malware

How to remove “MSILPerseus.6361”?

Malware Removal

The MSILPerseus.6361 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSILPerseus.6361 virus can do?

  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Uses Windows utilities for basic functionality
  • Executed a process and injected code into it, probably while unpacking
  • Sniffs keystrokes
  • A process was set to shut the system down when terminated
  • Installs itself for autorun at Windows startup
  • Creates a copy of itself

Related domains:

z.whorecord.xyz
a.tomx.xyz
rustirt.ddns.net

How to determine MSILPerseus.6361?


File Info:

crc32: 24F03E8A
md5: 78ceafbdd7ecc8b9e2cb066d913e2450
name: contas_da_netflix_para_todos.exe
sha1: 4965acb45e856f3d5826f9392a1f9a273aa305e1
sha256: 3291acd880693ed1775fa8cbfaa2c140d206688c4ab2e46e6f0e9a17361351db
sha512: f7017d123ae04328d0ae222f8b5d11019398119cc8315e1f2bf6a817fa83d2f7143e9dbafa5c7c0ce65e5dbd11a6755992916b777e7b5410e01f40d53c77da61
ssdeep: 6144:/u9w0dEtJMpLvJAjhSQrdimy1gKYCNtfOimw4BIq:/CuJMvAMYinhjkIq
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Text
Assembly Version: 2.0.0.0
InternalName: Text.exe
FileVersion: 2.0.0.0
CompanyName: Text
LegalTrademarks: Text
Comments: Text
ProductName: Text
ProductVersion: 2.0.0.0
FileDescription: Text
OriginalFilename: Text.exe

MSILPerseus.6361 also known as:

MicroWorld-eScanGen:Variant.MSILPerseus.6361
FireEyeGeneric.mg.78ceafbdd7ecc8b9
CAT-QuickHealBackdoor.MSIL
ALYacGen:Variant.MSILPerseus.6361
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.MSIL.Generic.m!c
SangforMalware
K7AntiVirusTrojan ( 0055e39a1 )
BitDefenderGen:Variant.MSILPerseus.6361
K7GWTrojan ( 0055e39a1 )
Cybereasonmalicious.dd7ecc
TrendMicroTROJ_GEN.R03FC0PLD19
BitDefenderThetaGen:NN.ZemsilF.34090.pm3@ai2S@Ah
TrendMicro-HouseCallTROJ_GEN.R03FC0PLD19
AvastWin32:Malware-gen
ClamAVWin.Trojan.Ursu-6860469-0
GDataGen:Variant.MSILPerseus.6361
KasperskyHEUR:Backdoor.MSIL.Generic
NANO-AntivirusTrojan.Win32.Starter.efyfny
APEXMalicious
RisingBackdoor.Generic!8.CE (CLOUD)
Ad-AwareGen:Variant.MSILPerseus.6361
SophosTroj/MSIL-FMQ
ComodoTrojWare.MSIL.Injector.IFO@7gewfj
F-SecureTrojan.TR/Dropper.Gen
DrWebBackDoor.Cybergate.1
ZillyaTrojan.Inject.Win32.198056
Invinceaheuristic
McAfee-GW-EditionTrojan-FKBG
Trapminesuspicious.low.ml.score
EmsisoftGen:Variant.MSILPerseus.6361 (B)
SentinelOneDFI – Malicious PE
MaxSecureTrojan.Malware.11197868.susgen
AviraTR/Dropper.Gen
MAXmalware (ai score=100)
Endgamemalicious (high confidence)
ArcabitTrojan.MSILPerseus.D18D9
SUPERAntiSpywareTrojan.Agent/Gen-Injector
ZoneAlarmHEUR:Backdoor.MSIL.Generic
MicrosoftBackdoor:MSIL/Bladabindi
AhnLab-V3Trojan/Win32.Bladabindi.C2505853
McAfeeTrojan-FKBG
VBA32TScope.Trojan.MSIL
PandaTrj/CI.A
ESET-NOD32a variant of MSIL/Injector.IFO
TencentMalware.Win32.Gencirc.10b7cb02
YandexTrojan.Inject!XlgVLvkB3eM
IkarusTrojan.MSIL.Injector
eGambitUnsafe.AI_Score_99%
FortinetMSIL/Injector.CMQ!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360Win32/Trojan.d93

How to remove MSILPerseus.6361?

MSILPerseus.6361 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment