Malware

MSIL/Filecoder.Fantom.R information

Malware Removal

The MSIL/Filecoder.Fantom.R is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Filecoder.Fantom.R virus can do?

  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine MSIL/Filecoder.Fantom.R?


File Info:

crc32: 413FF65A
md5: 4d21746b8b754edbcccb8e2b1c3a9c1b
name: us-2020-20-03-16-18-40-0c03454b-9417807a-3c87d917-c6c250ef-c4912959.com
sha1: 4a553c77b52313bc6d5789f04eb25f791a821912
sha256: 0cba2fdd4978348795804642fac0dfa416214522618dee759ae98f2ff95781a4
sha512: a8cdd993c595f562b65db0237adf70ce11205b00eb8a7867242394931e516e3f10bdafb597e295c4685645c94395eab6ef8ee903cfe9e639f7127f2d22049f86
ssdeep: 1536:JfyPPoqfzGO7FeFq55S9Dhz+i9ivm7M84Zp55E5Jz5WRJqKH/lLKVjxtN9NbVx:wPP5jJe85Yhz+aiug84ZL5QJzaMjn3N
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2020
Assembly Version: 2.5.3.7
InternalName: visiodarven.exe
FileVersion: 2.5.3.7
CompanyName: Coazer
Comments: Fadibor
ProductName: Uzarol
ProductVersion: 2.5.3.7
FileDescription: Winupdalen
OriginalFilename: visiodarven.exe

MSIL/Filecoder.Fantom.R also known as:

MicroWorld-eScanTrojan.GenericKD.33725863
FireEyeGeneric.mg.4d21746b8b754edb
McAfeeVawtrak-FAG!4D21746B8B75
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 004c46cd1 )
BitDefenderTrojan.GenericKD.33725863
K7GWTrojan ( 004c46cd1 )
CrowdStrikewin/malicious_confidence_100% (W)
TrendMicroTROJ_GEN.R011C0PDR20
APEXMalicious
AvastWin32:Trojan-gen
GDataTrojan.GenericKD.33725863
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojan:MSIL/Filecoder.940bca59
NANO-AntivirusTrojan.Win32.Kryptik.hjhpvn
AegisLabTrojan.Win32.Generic.4!c
RisingDropper.Generic!8.35E (CLOUD)
Endgamemalicious (high confidence)
SophosMal/Generic-S
ComodoMalware@#ld6p0tq4iaq0
DrWebTrojan.PackedNET.87
ZillyaTrojan.Filecoder.Win32.13974
Invinceaheuristic
McAfee-GW-EditionVawtrak-FAG!4D21746B8B75
Trapminemalicious.high.ml.score
EmsisoftTrojan.GenericKD.33725863 (B)
IkarusTrojan.MSIL.Crypt
CyrenW32/Trojan.SYUL-3200
JiangminTrojan.Generic.eslcb
MaxSecureTrojan.Malware.7164915.susgen
AviraTR/Dropper.Gen
WebrootW32.Trojan.Gen
MAXmalware (ai score=89)
Antiy-AVLTrojan/Win32.AGeneric
ArcabitTrojan.Generic.D2029DA7
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojan:Win32/Dynamer!rfn
AhnLab-V3Win-Trojan/MSILKrypt09.Exp
Acronissuspicious
VBA32TScope.Trojan.MSIL
ALYacTrojan.Ransom.Fantom
Ad-AwareTrojan.GenericKD.33725863
MalwarebytesRansom.BlackOut
PandaTrj/GdSda.A
ESET-NOD32MSIL/Filecoder.Fantom.R
TrendMicro-HouseCallTROJ_GEN.R011C0PDR20
TencentWin32.Trojan.Generic.Pdmf
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetW32/Generic.R!tr.ransom
BitDefenderThetaGen:NN.ZemsilF.34108.gq3@aqyS30
AVGWin32:Trojan-gen
Cybereasonmalicious.7b5231
Paloaltogeneric.ml
Qihoo-360Generic/HEUR/QVM03.0.D6B0.Malware.Gen

How to remove MSIL/Filecoder.Fantom.R?

MSIL/Filecoder.Fantom.R removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment