Trojan

Trojan:MSIL/Ranos.A removal instruction

Malware Removal

The Trojan:MSIL/Ranos.A is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:MSIL/Ranos.A virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Trojan:MSIL/Ranos.A?


File Info:

crc32: FD3B888D
md5: c88daa5e72ac7b31380ae51d3925bef6
name: C88DAA5E72AC7B31380AE51D3925BEF6.mlw
sha1: 0cc82196bbb809cd9ea49c154e1feb3e58b47626
sha256: dcd84f135114a63935aa33f2dc73f2c5c2928dd8d0f82bc824522ef5e1b81098
sha512: 3757969999d326e5a4725bd4a6f2be4a623d77711389ef2003d04d9080a3df5824a1023df0221a2a876f4cb56e48e722a34bdcd95b9163978c79f5c84d4de9a6
ssdeep: 1536:pTsy7iSpUuHH5gYlMauXB2+wCYst3aQ7CCZpwYcCprwP/rftotoJOZ7g28epJLN:pRHp3HGkM9XB2pwR7CCZpwYcIwnjqoJ
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2013
Assembly Version: 8.12.16.75
InternalName: ww.exe
FileVersion: 12.16.21.84
CompanyName: aMyCar6ZiXTj
LegalTrademarks: aR5zRVnT1WbV79k0YHE
ProductName: aWQgSeGZzZgMvrPj
ProductVersion: 12.16.21.84
FileDescription: aOIdhB3AWrV
OriginalFilename: ww.exe

Trojan:MSIL/Ranos.A also known as:

Elasticmalicious (high confidence)
FireEyeGeneric.mg.c88daa5e72ac7b31
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
Cybereasonmalicious.6bbb80
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Packed.Hpbladabi-6860330-0
KasperskyHEUR:Trojan.MSIL.Generic
NANO-AntivirusTrojan.Win32.Confuser.ejqyut
SophosMal/Generic-S
ComodoMalware@#27usl20mkkugg
F-SecureHeuristic.HEUR/AGEN.1112944
ZillyaTrojan.Generic.Win32.5308
TrendMicroBKDR_HPBLADABI.SM2
McAfee-GW-EditionArtemis!Trojan
IkarusTrojan.MSIL.Crypt
JiangminTrojan.Generic.apcdv
AviraHEUR/AGEN.1112944
Antiy-AVLTrojan/MSIL.Packed.Confuser.P
MicrosoftTrojan:MSIL/Ranos.A
ZoneAlarmHEUR:Trojan.Win32.Generic
CynetMalicious (score: 100)
McAfeeArtemis!C88DAA5E72AC
MalwarebytesMachineLearning/Anomalous.94%
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/Injector.JFP
TrendMicro-HouseCallBKDR_HPBLADABI.SM2
TencentWin32.Trojan.Generic.Szll
YandexTrojan.Agent!tpjFYq7eYQ0
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
FortinetMSIL/Injecto.58E1!tr
BitDefenderThetaGen:NN.ZemsilF.34804.fm0@amV7Qko
AVGWin32:Malware-gen
AvastWin32:Malware-gen
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360Generic/Trojan.7c5

How to remove Trojan:MSIL/Ranos.A?

Trojan:MSIL/Ranos.A removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment