Malware

Should I remove “Vilsel.2 (B)”?

Malware Removal

The Vilsel.2 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Vilsel.2 (B) virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Creates RWX memory
  • Dynamic (imported) function loading detected
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Vilsel.2 (B)?


File Info:

name: 7D22CD43E216DB47BDCB.mlw
path: /opt/CAPEv2/storage/binaries/c4449527e6bb4c0ee0bc7a34a7d3696a5ddef943f82edf300078713391ffff5a
crc32: 8912C17F
md5: 7d22cd43e216db47bdcb703ed8f7a13a
sha1: 98fc76204cf846904d5d14b056fb310d8fb3d16b
sha256: c4449527e6bb4c0ee0bc7a34a7d3696a5ddef943f82edf300078713391ffff5a
sha512: 2e031a580a440058ee83f6c8b6b73d42254eeb43da008ac987d436dffdcdeec69e22596ac3b30e0829fd4f671544645d29aa9d7bd5ff4787594a68e593dec012
ssdeep: 3072:fOF/aJmXuaOcb6aeEN0Da9L5XckqN0Lea2ZEAJsYdBnTLM:fQ/aJ8uHclNMgXs0R2fTL
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F4E3120E6280CB2ED691AFB6CE9897F59301DD50D14007A36F093C9FBE7A6B1195832E
sha3_384: 14b9a7c84145d44d48e1caf0a4eb43452b4d9f1fea4fc3ca9d6383318f4886149a322543594ef52ce0424fb74945fa38
ep_bytes: b84cb344005064ff3500000000648925
timestamp: 2009-12-10 18:31:25

Version Info:

0: [No Data]

Vilsel.2 (B) also known as:

LionicTrojan.Multi.Generic.4!c
MicroWorld-eScanGen:Variant.Vilsel.2
FireEyeGeneric.mg.7d22cd43e216db47
ALYacGen:Variant.Vilsel.2
CylanceUnsafe
AlibabaTrojan:Win32/Generic.0b29fc2f
Cybereasonmalicious.3e216d
BitDefenderThetaGen:NN.ZexaF.34182.jmWfaerWX2ni
CyrenW32/Trojan.JPYM-7413
SymantecML.Attribute.HighConfidence
APEXMalicious
KasperskyTrojan-Banker.Win32.ClipBanker.qmn
BitDefenderGen:Variant.Vilsel.2
NANO-AntivirusTrojan.Win32.Vilsel.dfmzov
AvastWin32:Malware-gen
EmsisoftGen:Variant.Vilsel.2 (B)
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R002C0WLU21
McAfee-GW-EditionBehavesLike.Win32.Corrupt.cc
SophosKeygen (PUA)
Ikarusnot-a-virus:Keygen.SuspectCRC
WebrootW32.Malware.Heur
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftPUA:Win32/Keygen
ZoneAlarmTrojan-Banker.Win32.ClipBanker.qmn
GDataGen:Variant.Vilsel.2
CynetMalicious (score: 100)
McAfeeArtemis!7D22CD43E216
MAXmalware (ai score=85)
VBA32TrojanBanker.ClipBanker
MalwarebytesMalware.Heuristic.1001
TrendMicro-HouseCallTROJ_GEN.R002C0WLU21
TencentWin32.Trojan.Spnr.Aiic
YandexTrojan.Vilsel!GwTl0WnxvL4
SentinelOneStatic AI – Malicious PE
FortinetPossibleThreat
AVGWin32:Malware-gen
MaxSecureTrojan.Malware.1728101.susgen

How to remove Vilsel.2 (B)?

Vilsel.2 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment