Backdoor

Backdoor.MSIL.Crysant.aj malicious file

Malware Removal

The Backdoor.MSIL.Crysant.aj is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Backdoor.MSIL.Crysant.aj virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Performs some HTTP requests
  • Checks for the presence of known windows from debuggers and forensic tools
  • Installs itself for autorun at Windows startup
  • Creates a hidden or system file
  • Detects VirtualBox through the presence of a registry key
  • Attempts to modify proxy settings

Related domains:

z.whorecord.xyz
a.tomx.xyz
cdn.discordapp.com
ocsp.digicert.com

How to determine Backdoor.MSIL.Crysant.aj?


File Info:

crc32: EB845624
md5: ad8eb77a81c96b8fce280e63cbef88a6
name: AD8EB77A81C96B8FCE280E63CBEF88A6.mlw
sha1: 8dcf04fc4b44a26e5498fd601ff08ab2b9ae3370
sha256: 5e37597f22fec3e41a6b1f977351005c173d5847c339cb8d975855c1af0911ce
sha512: 35a5546c74e7d546639f5a4bf58454e98cd29021cd86dff35c967444da2d92de683227da17a26d49e8e081308c8617a9d2e57f7c08c43c81d8b320b5e66b69ff
ssdeep: 12:6zsqKTB0vE+Ja4LXgR7bkNkfU4nkq34bkzzq2EnBoCQBenQFp1Jvyn:6wRT+vZJRgRHxfbnkq34bMq2KQBenApq
type: MS-DOS executable, MZ for MS-DOS

Version Info:

0: [No Data]

Backdoor.MSIL.Crysant.aj also known as:

K7AntiVirusTrojan ( 0057474c1 )
LionicTrojan.MSIL.Crysant.m!c
CylanceUnsafe
K7GWTrojan ( 0057474c1 )
CyrenW32/Kryptik.CPZ.gen!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win32/Kryptik.HHXJ
APEXERROR Unable to scan (corrupt PE file).
KasperskyBackdoor.MSIL.Crysant.aj
AlibabaBackdoor:MSIL/Crysant.7e3b9f80
NANO-AntivirusVirus.Win32.Gen.ccmw
SophosMal/Generic-S
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.xc
SentinelOneStatic AI – Suspicious PE
MicrosoftTrojan:Win32/Wacatac.B!ml
McAfeeArtemis!AD8EB77A81C9
VBA32suspected of Win32.Zero.Heur
TrendMicro-HouseCallTROJ_GEN.R002H0CEO21
RisingPacker.Win32.Obfuscator.n (CLASSIC)
IkarusTrojan.Win32.Crypt
FortinetW32/Kryptik.HHXJ!tr
Paloaltogeneric.ml

How to remove Backdoor.MSIL.Crysant.aj?

Backdoor.MSIL.Crysant.aj removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment