Trojan

Should I remove “Trojan.MsilFC.S24736981”?

Malware Removal

The Trojan.MsilFC.S24736981 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.MsilFC.S24736981 virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Anomalous .NET characteristics
  • Binary compilation timestomping detected

How to determine Trojan.MsilFC.S24736981?


File Info:

name: 0C05871390965BF3CD04.mlw
path: /opt/CAPEv2/storage/binaries/c0ca75d5ce214fe78803faba72803c79faed09186fdba587af2f3bb4bae426cb
crc32: 1704FAFE
md5: 0c05871390965bf3cd0458973b110e46
sha1: 8ba1ea4dd83c9dcd43885bf5e623bf12a9229b0d
sha256: c0ca75d5ce214fe78803faba72803c79faed09186fdba587af2f3bb4bae426cb
sha512: 6f7b54c8a2ccc12cfaecb84a600cec410e92a0b6a2cc353af0084a2a920156f9d402050ee4ccb80c94ad08bada73026fe0c7f4d6d0951e004837191fa7796b37
ssdeep: 12288:nEpiya/r/9ak1IVD69wzYD8kgQdX4Q15T:qi7
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1B3842428647FC05940E3EEA62DDCA8FBD99A95E3640C743701B4A33B8B51B84DE4F479
sha3_384: 8768ddfb0439651c71aadc9443cc253466f45d39095e5046880cba836a9fe1f5609f6ee1af8acd14c09349eccab7a0c7
ep_bytes: ff250020400000000000000000000000
timestamp: 2088-12-16 18:58:44

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: Tricolors.exe
LegalCopyright:
OriginalFilename: Tricolors.exe
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

Trojan.MsilFC.S24736981 also known as:

LionicTrojan.Win32.Stealer.i!c
Elasticmalicious (high confidence)
DrWebTrojan.PackedNET.972
MicroWorld-eScanTrojan.GenericKD.47466280
FireEyeGeneric.mg.0c05871390965bf3
CAT-QuickHealTrojan.MsilFC.S24736981
McAfeeDownloader-FBZC!0C0587139096
CylanceUnsafe
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 005887fd1 )
AlibabaTrojan:Win32/Kryptik.ali2000016
K7GWTrojan ( 005887fd1 )
Cybereasonmalicious.dd83c9
BitDefenderThetaGen:NN.ZemsilF.34062.ym0@aelZIYn
CyrenW32/MSIL_Troj.CY.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.ADAC
TrendMicro-HouseCallTROJ_GEN.R002C0DKM21
Paloaltogeneric.ml
KasperskyHEUR:Trojan-PSW.Win32.Stealer.gen
BitDefenderTrojan.GenericKD.47466280
AvastWin32:PWSX-gen [Trj]
TencentWin32.Trojan-qqpass.Qqrob.Eoj
Ad-AwareTrojan.GenericKD.47466280
EmsisoftTrojan.Crypt (A)
ComodoTrojWare.Win32.Agent.ihkbb@0
TrendMicroTROJ_GEN.R002C0DKM21
McAfee-GW-EditionBehavesLike.Win32.Generic.fz
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
GDataTrojan.GenericKD.47466280
JiangminTrojan.PSW.MSIL.cwpz
WebrootW32.Trojan.Gen
AviraHEUR/AGEN.1144480
MAXmalware (ai score=100)
Antiy-AVLTrojan/Generic.ASMalwS.34D6D87
KingsoftWin32.PSWTroj.Undef.(kcloud)
GridinsoftTrojan.Win32.Agent.ns
ViRobotTrojan.Win32.Z.Kryptik.398848.AY
MicrosoftTrojan:MSIL/AgentTesla.LEG!MTB
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.C4628732
VBA32TScope.Trojan.MSIL
ALYacTrojan.GenericKD.47466280
MalwarebytesTrojan.Crypt.MSIL.Generic
APEXMalicious
YandexTrojan.Kryptik!4D0hDobmHeo
IkarusTrojan-Spy.MSIL.Agent
FortinetMSIL/Kryptik.ACCF!tr
AVGWin32:PWSX-gen [Trj]
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.MsilFC.S24736981?

Trojan.MsilFC.S24736981 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment