Ransom Trojan

Trojan-Ransom.MSIL.Agent.fqlc removal instruction

Malware Removal

The Trojan-Ransom.MSIL.Agent.fqlc is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.MSIL.Agent.fqlc virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan-Ransom.MSIL.Agent.fqlc?


File Info:

crc32: 15D8A8FE
md5: c2cf83b97cdf3d22c00f55c91dd27466
name: C2CF83B97CDF3D22C00F55C91DD27466.mlw
sha1: 1b6c3f77a7be71d1d6dbfd05be7727ca242caeef
sha256: 0aaf74978a939bfec1b7d0ae5dc7b7f68fb219ba6ef33fabe1316d3f6cbc8aa3
sha512: 2c8ec2322e144bed02ba0a974d7adfbeeaa4707ea1565244900ea7db4559711ad410d2f530c888f6c636e6f44939875758c9a26f527e76e80abf666821be286b
ssdeep: 384:SzXYjXpsj2hk/LuRqqfl678gyJoEMcwSQDWAFPo9Nvm4uyICCq20ePnokwOwAbo:OYjXpsWPJoExwSeE7pICxWfcsEn
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2018
Assembly Version: 1.0.0.0
InternalName: Exocrypt XTC v2.0.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: Exocrypt XTC v2.0
ProductVersion: 1.0.0.0
FileDescription: Exocrypt XTC v2.0
OriginalFilename: Exocrypt XTC v2.0.exe

Trojan-Ransom.MSIL.Agent.fqlc also known as:

K7AntiVirusTrojan ( 0052f4a91 )
ALYacTrojan.Ransom.Exocrypt
CylanceUnsafe
K7GWTrojan ( 0052f4a91 )
Cybereasonmalicious.97cdf3
SymantecTrojan Horse
ESET-NOD32a variant of MSIL/Filecoder.MZ
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.MSIL.Agent.fqlc
BitDefenderGen:Heur.Ransom.HiddenTears.1
NANO-AntivirusTrojan.Win32.Ransom.fbmzop
MicroWorld-eScanGen:Heur.Ransom.HiddenTears.1
TencentMsil.Trojan.Agent.Syrv
Ad-AwareGen:Heur.Ransom.HiddenTears.1
SophosMal/Generic-R + Mal/Ramsil-X
ComodoMalware@#2np5mwmrzidx
BitDefenderThetaGen:NN.ZemsilF.34684.bm0@aWTY2cg
McAfee-GW-EditionRansom-Exocrypt!C2CF83B97CDF
FireEyeGen:Heur.Ransom.HiddenTears.1
EmsisoftGen:Heur.Ransom.HiddenTears.1 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1123818
MicrosoftTrojan:Win32/Wacatac.B!ml
AegisLabTrojan.Win32.Generic.4!c
GDataGen:Heur.Ransom.HiddenTears.1
AhnLab-V3Trojan/Win32.Exocrypt.C2494908
McAfeeRansom-Exocrypt!C2CF83B97CDF
MAXmalware (ai score=96)
PandaTrj/GdSda.A
RisingTrojan.Filecoder!8.68 (CLOUD)
YandexTrojan.Filecoder!AueVJNzGAQk
IkarusTrojan-Ransom.HiddenTear
FortinetMSIL/Filecoder.MZ!tr.ransom
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Trojan-Ransom.MSIL.Agent.fqlc?

Trojan-Ransom.MSIL.Agent.fqlc removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment