Ransom Trojan

About “Trojan-Ransom.MSIL.Agent.fqnn” infection

Malware Removal

The Trojan-Ransom.MSIL.Agent.fqnn is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan-Ransom.MSIL.Agent.fqnn virus can do?

  • Network activity detected but not expressed in API logs

How to determine Trojan-Ransom.MSIL.Agent.fqnn?


File Info:

crc32: 32ACD113
md5: fa7111803027232faaf1f75056f3896a
name: FA7111803027232FAAF1F75056F3896A.mlw
sha1: bb4891a4cb82699d0109357ef3e4b62a1af28237
sha256: 575bedc4860ba50a5f91a8deaf06eddee8aef1e82e7cd7e464020d68c87b2021
sha512: e8bfaf887115c43728f2b8faf4d1135f281ae1971ed480c0d9a2c8bf1fc0aa7b730487b7bb597a7223f7d3c1d909de11f966b38cc33ca75f61637cab464d0143
ssdeep: 384:lVIWdfkS2+pGl5kvwKwq6u4f+e70tYt3DM2UB5e6KKKKKKKKKKKKKKKKKKKKKKK:lVPKll2+0WRM2UBfo+0W7MaUB+
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2015
Assembly Version: 1.0.0.0
InternalName: hidden-tear-decrypter.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: hidden-tear-decrypter
ProductVersion: 1.0.0.0
FileDescription: hidden-tear-decrypter
OriginalFilename: hidden-tear-decrypter.exe

Trojan-Ransom.MSIL.Agent.fqnn also known as:

LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
ALYacTrojan.GenericKD.40405294
ZillyaTrojan.GenericKD.Win32.159098
SangforRansom.MSIL.Agent.fqnn
CrowdStrikewin/malicious_confidence_60% (D)
AlibabaRansom:MSIL/FileCrypter.76f40a48
Cybereasonmalicious.030272
SymantecRansom.HiddenTear!g1
APEXMalicious
AvastWin32:Malware-gen
ClamAVWin.Dropper.Tiggre-9821453-0
KasperskyTrojan-Ransom.MSIL.Agent.fqnn
BitDefenderTrojan.GenericKD.40405294
NANO-AntivirusTrojan.Win32.Ransom.fhscit
MicroWorld-eScanTrojan.GenericKD.40405294
TencentMsil.Trojan.Agent.Eeqr
Ad-AwareTrojan.GenericKD.40405294
SophosMal/Generic-S
ComodoMalware@#11ogzmu70r4zg
BitDefenderThetaGen:NN.ZemsilF.34790.nm0@a8kE6yf
McAfee-GW-EditionRansomware-FTD!FA7111803027
FireEyeGeneric.mg.fa7111803027232f
EmsisoftTrojan.GenericKD.40405294 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1129970
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.27BC59A
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataTrojan.GenericKD.40405294
McAfeeRansomware-FTD!FA7111803027
MalwarebytesRansom.HiddenTearDecrypter
PandaTrj/GdSda.A
IkarusTrojan-Ransom.FileCrypter
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Generic.AP.1D1BCC!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Ransom.Generic.HwMAEpsA

How to remove Trojan-Ransom.MSIL.Agent.fqnn?

Trojan-Ransom.MSIL.Agent.fqnn removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment