Trojan

TrojanDownloader:MSIL/Drkller.A!bit (file analysis)

Malware Removal

The TrojanDownloader:MSIL/Drkller.A!bit is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What TrojanDownloader:MSIL/Drkller.A!bit virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine TrojanDownloader:MSIL/Drkller.A!bit?


File Info:

crc32: E5788CBC
md5: 081dd532f5d8f28908157ee9321489c0
name: 081DD532F5D8F28908157EE9321489C0.mlw
sha1: 5549fa82e678a3c8fda4def4e891426bb2f3347f
sha256: 70c90344124d56b43e4d69e7a4c50fb222a0e6159ee081e591b7cff8217a5c43
sha512: d2b58a1e075cb4efb10c702f59040733ba5f9df27a488552bbd1e62168e83ea7970f91029c253aceffc2cb17919eb647d7073a637c2be8f7ebae62bccde73019
ssdeep: 384:MLSW2L4xvyCM69pl+JNneH4PqmiIfLcUo/yLTZntmv5ijMt3It:Kf2L4xvyCM69pl+JNncwqmtLcUlmIj0
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: aCopyrightXXX
Assembly Version: 1.0.0.0
InternalName: video.exe
FileVersion: 1.0.0.0
CompanyName: AcompanyXXX
LegalTrademarks: aTrademarkXXX
Comments: AdescriptionXXX
ProductName: aproductXXX
ProductVersion: 1.0.0.0
FileDescription: AtitleXXX
OriginalFilename: video.exe

TrojanDownloader:MSIL/Drkller.A!bit also known as:

K7AntiVirusTrojan ( 700000121 )
Elasticmalicious (high confidence)
ClamAVWin.Packed.Tpyn-7114692-0
CAT-QuickHealTrojan.MsilFC.S15905058
ALYacTrojan.MSIL.Basic.3.Gen
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
K7GWTrojan ( 700000121 )
Cybereasonmalicious.2f5d8f
CyrenW32/S-0af572e4!Eldorado
ESET-NOD32a variant of MSIL/Agent.OGT
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
CynetMalicious (score: 99)
KasperskyHEUR:Trojan.MSIL.Tpyn.chu
BitDefenderTrojan.MSIL.Basic.3.Gen
MicroWorld-eScanTrojan.MSIL.Basic.3.Gen
Ad-AwareTrojan.MSIL.Basic.3.Gen
ComodoTrojWare.MSIL.Tiggre.OGT@7gybp1
BitDefenderThetaAI:Packer.BF2AED2A1F
TrendMicroTROJ_GEN.R005C0DHO21
McAfee-GW-EditionTrojan-FSGX!081DD532F5D8
FireEyeGeneric.mg.081dd532f5d8f289
EmsisoftTrojan.MSIL.Basic.3.Gen (B)
SentinelOneStatic AI – Malicious PE
AviraTR/ATRAPS.Gen
eGambitUnsafe.AI_Score_99%
MicrosoftTrojanDownloader:MSIL/Drkller.A!bit
GridinsoftTrojan.Win32.Agent.vl!n
ArcabitTrojan.MSIL.Basic.3.Gen
ZoneAlarmHEUR:Trojan.Win32.Agent.gen
GDataTrojan.MSIL.Basic.3.Gen
McAfeeTrojan-FSGX!081DD532F5D8
MAXmalware (ai score=84)
TrendMicro-HouseCallTROJ_GEN.R005C0DHO21
RisingBackdoor.GhostEye!1.CA24 (CLASSIC)
IkarusTrojan.SuspectCRC
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Generic.AP.178B1C!tr
AVGWin32:TrojanX-gen [Trj]

How to remove TrojanDownloader:MSIL/Drkller.A!bit?

TrojanDownloader:MSIL/Drkller.A!bit removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment