RegAsm trojan?

Visual Art Group 1 Reputation point
2022-07-17T09:09:45.833+00:00

A few days ago Norton Antivirus started reporting RegAsm.exe as infected with a Backdoor.Trojan Activity 406 towards this address <Removed>.
I tried deleting RegAsm, but I do not have TrustedInstaller permissions.
I found that there are many copies of RegAsm.exe on the PC, which are all identical to each other, same size and same date, so I thought of replacing the infected one with another one, but I can't do it for the permissions.
Any advice?

Windows for business | Windows Client for IT Pros | Devices and deployment | Configure application groups
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Reza-Ameri 17,341 Reputation points Volunteer Moderator
    2022-07-17T15:13:44.63+00:00

    Try download and run a full scan with the following website:
    https://learn.microsoft.com/en-us/microsoft-365/security/intelligence/safety-scanner-download


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.