Trojan

Trojan.Generic.TRFH772 (file analysis)

Malware Removal

The Trojan.Generic.TRFH772 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Generic.TRFH772 virus can do?

  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine Trojan.Generic.TRFH772?


File Info:

name: BBCE3FDB64A94DF58229.mlw
path: /opt/CAPEv2/storage/binaries/48fb9bcefa3ecc1521a9c9d6f204be56298e244f02af20cd775d9fc117cf9e10
crc32: DF713536
md5: bbce3fdb64a94df5822924751a2fb95b
sha1: 8f4ddec80c683b4af5f283f37bb5e99daa498654
sha256: 48fb9bcefa3ecc1521a9c9d6f204be56298e244f02af20cd775d9fc117cf9e10
sha512: 2c35f78d18680076d6734120b267e44adb1d35ed6fa25b4674bd19d11679c4895d84cafb2eaa3a1cd14e56ac6f044e2dfbc54b07a19c29ae3367bd1354339199
ssdeep: 96:6YjX/B8Dn4qwuK/ncVqZ790AvKn6riLNQ+e3q5dNtosZ2Y843TWVWe16GRlLtfUk:vj2Dn+nAK9/vkvWHqzL3aVPDRAin
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T16EF164147AF8512DF2BB8FB06DD266D9EDFEF3236906466A148103038F02F92DD425B5
sha3_384: 44d9f243bb3ccd73ff4809cad64dec3bb26c2f2bf94a9e5f5ddcb38e25407f788afb141baf386d84993126ae89254de4
ep_bytes: ff250020400000000000000000000000
timestamp: 2023-06-06 05:37:56

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: run.exe
LegalCopyright:
OriginalFilename: run.exe
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

Trojan.Generic.TRFH772 also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanIL:Trojan.MSILZilla.7222
ClamAVWin.Packed.Msilzilla-9916562-0
FireEyeGeneric.mg.bbce3fdb64a94df5
CAT-QuickHealTrojan.Generic.TRFH772
MalwarebytesGeneric.Malware.AI.DDS
ZillyaDropper.Small.Win32.22229
SangforTrojan.Win32.Save.a
Cybereasonmalicious.80c683
CyrenW32/MSIL_Small.F.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/TrojanDropper.Small.GE
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.MSIL.Miner.gen
BitDefenderIL:Trojan.MSILZilla.7222
AvastWin32:MalwareX-gen [Trj]
TencentTrojan.Win32.Minier.za
EmsisoftIL:Trojan.MSILZilla.7222 (B)
F-SecureHeuristic.HEUR/AGEN.1308522
DrWebTrojan.MulDropNET.31
VIPREIL:Trojan.MSILZilla.7222
TrendMicroTrojan.MSIL.VERIUM.SMSNQ
McAfee-GW-EditionDropper-FYT!BBCE3FDB64A9
Trapminemalicious.moderate.ml.score
SophosTroj/Mdrop-JSX
IkarusTrojan-Dropper.MSIL.Small
GDataMSIL.Trojan.PSE1.E7Z3KK
AviraHEUR/AGEN.1308522
MAXmalware (ai score=88)
Antiy-AVLTrojan/Win32.Wacatac
ArcabitIL:Trojan.MSILZilla.D1C36
ZoneAlarmHEUR:Trojan.MSIL.Miner.gen
MicrosoftTrojan:MSIL/Spy!atmn
GoogleDetected
Acronissuspicious
BitDefenderThetaGen:NN.ZemsilF.36250.am0@aq8i9Vi
ALYacIL:Trojan.MSILZilla.7222
TACHYONTrojan/W32.DN-Agent.8192.AZ
VBA32TScope.Trojan.MSIL
Cylanceunsafe
PandaTrj/GdSda.A
RisingSpyware.Agent!8.C6 (CLOUD)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Small.GE!tr
AVGWin32:MalwareX-gen [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Trojan.Generic.TRFH772?

Trojan.Generic.TRFH772 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment