Trojan

Trojan:MSIL/DllInjector.ZC!MTB information

Malware Removal

The Trojan:MSIL/DllInjector.ZC!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:MSIL/DllInjector.ZC!MTB virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Trojan:MSIL/DllInjector.ZC!MTB?


File Info:

name: 43750AF309F41E99B978.mlw
path: /opt/CAPEv2/storage/binaries/934e48c1ab3288d4e406980604a905ae1f9c1c9fe0d113e81a228133921b0a3b
crc32: FF417CEA
md5: 43750af309f41e99b978252dc91e03e7
sha1: 0a09026dd858e7f4abb133364951af4bb208c0f1
sha256: 934e48c1ab3288d4e406980604a905ae1f9c1c9fe0d113e81a228133921b0a3b
sha512: 29306727c9cc9c3a0717392115bc2572684d4c14f9c9c02664fedbea0c4c069197d7ff649eb05c19e1684a87b9b7344ee609d9461d5bcb224ec1b1f374d8c69e
ssdeep: 6144:85ZKMy+UI5hW9Gn806BRDqIEvyT8EABQAkhPf3lAPOcVnZQghkDc+GuDwpPfEY6W:8PugPuRBFAdkVdgO8nZHiw89YX
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F3A40248376E4625CBBF1F32CAA091598670F90B688FD73E48D464DE47D67CA87C2293
sha3_384: 6e8e234d0f4fb685b7d163bf751142d5b283f1827a2de8b5ead0c6290b6bf86271966e62a30541ba3741f9ea4061824b
ep_bytes: ff250020400000000000000000000000
timestamp: 2019-09-18 19:00:00

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: Loader
FileVersion: 1.0.0.0
InternalName: Loader.exe
LegalCopyright: Copyright © 2018
LegalTrademarks:
OriginalFilename: Loader.exe
ProductName: Loader
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Trojan:MSIL/DllInjector.ZC!MTB also known as:

BkavW32.AIDetectNet.01
LionicTrojan.Win32.Generic.4!c
FireEyeGeneric.mg.43750af309f41e99
CAT-QuickHealTrojan.Agent
McAfeeArtemis!43750AF309F4
MalwarebytesMachineLearning/Anomalous.95%
ZillyaTrojan.DllInject.Win32.455
SangforSuspicious.Win32.Save.a
K7AntiVirusUnwanted-Program ( 0051c47d1 )
K7GWUnwanted-Program ( 0051c47d1 )
Cybereasonmalicious.dd858e
CyrenW32/S-15bd0164!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/DllInject.XL potentially unsafe
Paloaltogeneric.ml
AvastWin32:Malware-gen
McAfee-GW-EditionArtemis!Trojan
SophosMal/Generic-R + Mal/MsilInj-G
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.Gen
MicrosoftTrojan:MSIL/DllInjector.ZC!MTB
CynetMalicious (score: 99)
AhnLab-V3Trojan/Win32.Occamy.C3264782
Acronissuspicious
CylanceUnsafe
APEXMalicious
RisingTrojan.Generic/MSIL@AI.100 (RDM.MSIL:BMlm6gSgs1TaopeK5ORIvg)
YandexRiskware.Agent!gq7AYByPDCw
IkarusPUA.DLLInjector
FortinetMSIL/DllInject.G
AVGWin32:Malware-gen
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan:MSIL/DllInjector.ZC!MTB?

Trojan:MSIL/DllInjector.ZC!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment