Trojan

Trojan.MSIL.RegRun malicious file

Malware Removal

The Trojan.MSIL.RegRun is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.MSIL.RegRun virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan.MSIL.RegRun?


File Info:

crc32: 84DC24E5
md5: e477577ee366756e527b7079c075966a
name: E477577EE366756E527B7079C075966A.mlw
sha1: 9cb5e88f1e4a059a3c6c9004249d335e783512d8
sha256: 66a1d67bea6da2959550ae890d1eb95b96f1b71d84c2e0ede9fde95cdf2b0a6a
sha512: 32509504f52ed156ffe15c8640d6900d3945f458265c67e96c200b8e902fa2e664e807aa230f1e286648446058a59ab75cfc0c6baa124949831e79191fc37da7
ssdeep: 12288:KYR9NVx2RiK3jSH3e58dmq5cXwxXr7ypm4eSs1k2s5YqK7:KwVx2bTSHu58dxcXw7KeSsQY9
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright 2007 - 2020
Assembly Version: 2.2.3.3
InternalName: SHokydavuqecygyfocozhe
FileVersion: 9.13.18.18
CompanyName: Gishycerivonevi
LegalTrademarks: (x2122) Gishycerivonevi
Comments:
ProductName: Beshyqoqury
ProductVersion: 2.2.3.3
FileDescription: Tulidywesobuwikaevataele
OriginalFilename: SHokydavuqecygyfocozhe.exe

Trojan.MSIL.RegRun also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.44545043
FireEyeGeneric.mg.e477577ee366756e
McAfeePWS-FCRY!E477577EE366
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusTrojan ( 005735881 )
BitDefenderTrojan.GenericKD.44545043
K7GWTrojan ( 005735881 )
CrowdStrikewin/malicious_confidence_100% (D)
CyrenW32/MSIL_Kryptik.BZH.gen!Eldorado
SymantecTrojan.Gen.2
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
KasperskyHEUR:Trojan.MSIL.RegRun.gen
AlibabaTrojan:MSIL/Kryptik.596c9f85
Ad-AwareTrojan.GenericKD.44545043
EmsisoftTrojan.GenericKD.44545043 (B)
DrWebBackDoor.SpyBotNET.25
TrendMicroTrojan.MSIL.WACATAC.THKAHBO
McAfee-GW-EditionPWS-FCRY!E477577EE366
SophosMal/Generic-S
IkarusTrojan.MSIL.Inject
JiangminPacked.Multi.eei
MaxSecureTrojan.Malware.73726097.susgen
MAXmalware (ai score=85)
KingsoftWin32.PSWTroj.Undef.(kcloud)
MicrosoftTrojan:Win32/Wacatac.C!ml
GridinsoftTrojan.Win32.Kryptik.oa
ArcabitTrojan.Generic.D2A7B413
ZoneAlarmHEUR:Trojan.MSIL.RegRun.gen
GDataTrojan.GenericKD.44545043
AhnLab-V3Malware/Gen.RL_Reputation.C4228681
BitDefenderThetaGen:NN.ZemsilF.34634.Sm0@ayA5gUn
ALYacTrojan.GenericKD.44545043
VBA32TScope.Trojan.MSIL
MalwarebytesTrojan.Crypt.MSIL
PandaTrj/GdSda.A
ZonerTrojan.Win32.98499
ESET-NOD32a variant of MSIL/Kryptik.YRS
TrendMicro-HouseCallTrojan.MSIL.WACATAC.THKAHBO
SentinelOneStatic AI – Malicious PE
FortinetMSIL/Kryptik.YRS!tr
WebrootW32.Trojan.Gen
AVGWin32:MalwareX-gen [Trj]
Cybereasonmalicious.ee3667
Paloaltogeneric.ml
Qihoo-360Generic/Trojan.08d

How to remove Trojan.MSIL.RegRun?

Trojan.MSIL.RegRun removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment