Crack

About “HackTool.MSIL.SIPCrack” infection

Malware Removal

The HackTool.MSIL.SIPCrack is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What HackTool.MSIL.SIPCrack virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Dynamic (imported) function loading detected
  • Authenticode signature is invalid

How to determine HackTool.MSIL.SIPCrack?


File Info:

name: 673D09CC738C664E4C4F.mlw
path: /opt/CAPEv2/storage/binaries/8d32a0906e83b9167ee0d5db8eb4fbf84a520cae4836f7040be26b88ab0499ed
crc32: 5E22C96E
md5: 673d09cc738c664e4c4f27b62cc7c084
sha1: 9496f2d5d9851c580708faa2f8cc2721154185e0
sha256: 8d32a0906e83b9167ee0d5db8eb4fbf84a520cae4836f7040be26b88ab0499ed
sha512: 3177e03a6dde6f6511b511e1f340ed7f864f448c8a2bd232d8c2cd2fec9f902dbaa12e2d65f7b6d07c43c9ab7771137bb610badafdb8517c64bc3c64ab651d9f
ssdeep: 1536:/4Ok4xKQNIMMYxQ6xWqG60nAQvxqQzeDOaPkYqppvHrPNT617Yw7D24Ytnb6559W:XOPZqQz1Au059rRodcVAGQqqck1Mno6
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F4543B17DAA89856F92209705D797AB62C275C775900EC0BB382FF4D287268374F732B
sha3_384: c73e95caa2789a8dcff7e4bbc669ec47e2cc5f02ff9e2bbb479b395fc14509c2a10a4dd285137721e8fab0f3641c5163
ep_bytes: 68982b4100e8f0ffffff000000000000
timestamp: 2013-05-16 17:11:38

Version Info:

Translation: 0x0409 0x04b0
Comments: Sip Cracker
CompanyName: Microsoft
FileDescription: Find User&Pass 4 Sip
LegalCopyright: Areef Arafat 0599357258
ProductName: Sip Cracker
FileVersion: 1.00
ProductVersion: 1.00
InternalName: Form75
OriginalFilename: Form75.exe

HackTool.MSIL.SIPCrack also known as:

BkavW32.AIDetect.malware1
LionicTrojan.Win32.Johnnie.4!c
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Ranapama.AJM
CAT-QuickHealPUA.WacapewVMF.S19740905
ALYacTrojan.Ranapama.AJM
CylanceUnsafe
ZillyaTool.SIPCrack.Win32.70
Cybereasonmalicious.c738c6
CyrenW32/S-615aa9a4!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/HackTool.SIPCrack.A potentially unsafe
APEXMalicious
Paloaltogeneric.ml
ClamAVWin.Virus.Sality-6828382-0
KasperskyHEUR:HackTool.MSIL.SIPCrack.gen
BitDefenderTrojan.Ranapama.AJM
NANO-AntivirusTrojan.Win32.DownLoad4.fkfdxn
SUPERAntiSpywareTrojan.Agent/Gen-Artemis
AvastWin32:Malware-gen
TencentWin32.Trojan.Graftor.Wnmr
Ad-AwareTrojan.Ranapama.AJM
TACHYONTrojan/W32.VB-Agent.282624.BK
EmsisoftTrojan.Ranapama.AJM (B)
ComodoApplication.Win32.HackTool.SIPCrack.A@7cn3ep
DrWebTrojan.DownLoad4.1738
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.dt
FireEyeGeneric.mg.673d09cc738c664e
SophosGeneric PUA JE (PUA)
SentinelOneStatic AI – Malicious PE
GDataTrojan.Ranapama.AJM
AviraTR/Graftor.pqienh
Antiy-AVLTrojan/Generic.ASMalwS.BE166F
MicrosoftHackTool:Win32/Occamy.C
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Graftor.R285048
Acronissuspicious
McAfeeGenericRXAT-XF!673D09CC738C
MAXmalware (ai score=82)
VBA32TScope.Trojan.VB
MalwarebytesMalware.AI.3404131468
YandexTrojan.GenAsa!I+AA32xWGKk
IkarusTrojan.Graftor
FortinetW32/Agent.ART!tr
BitDefenderThetaGen:NN.ZevbaF.34294.rm0@aKftCUbi
AVGWin32:Malware-gen
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_80% (D)
MaxSecureTrojan.Malware.300983.susgen

How to remove HackTool.MSIL.SIPCrack?

HackTool.MSIL.SIPCrack removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment