Malware

How to remove “Mal/Generic-S + Troj/Krypt-CI”?

Malware Removal

The Mal/Generic-S + Troj/Krypt-CI is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Generic-S + Troj/Krypt-CI virus can do?

  • Network activity detected but not expressed in API logs

How to determine Mal/Generic-S + Troj/Krypt-CI?


File Info:

crc32: 7F5CF804
md5: b28324fa7ead5dae86b30af4950c0faa
name: B28324FA7EAD5DAE86B30AF4950C0FAA.mlw
sha1: 130a7107cf6b22dddf6533f10b6e763bc59002aa
sha256: 55043fccaa51456c6d7b5aab6245b5cb74dde6cf3a6358f79aaddb81b6e320db
sha512: f6b520c2b0b75b8678f4ad27796c24b644acd71d47fcb850b6c602927857d28551e0239ad2774afa2660794878a5adf48943d0529215accfd309bbda49ab6421
ssdeep: 6144:Y9+buLr0XbnHX1jWTMLIwaig0R7bJDSuIigIS6wJ32fefRy8C5fVwFJLgG:NuL4Xb3Lpg0R/Jejigrw+RBC5
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2016
Assembly Version: 1.0.0.0
InternalName: SecurityLogonTy.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: ConsolePokerGame
ProductVersion: 1.0.0.0
FileDescription: ConsolePokerGame
OriginalFilename: SecurityLogonTy.exe

Mal/Generic-S + Troj/Krypt-CI also known as:

Elasticmalicious (high confidence)
DrWebTrojan.DownLoader42.41553
ALYacTrojan.Agent.FormBook
CylanceUnsafe
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojan:Win32/runner.ali1000123
K7GWTrojan ( 0052eef11 )
K7AntiVirusTrojan ( 0052eef11 )
CyrenW32/Trojan.SW.gen!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32Win32/Formbook.AA
ZonerTrojan.Win32.118793
APEXMalicious
AvastWin32:PWSX-gen [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Spy.MSIL.Noon.gen
BitDefenderTrojan.GenericKD.46936814
MicroWorld-eScanTrojan.GenericKD.46936814
Ad-AwareTrojan.GenericKD.46936814
SophosMal/Generic-S + Troj/Krypt-CI
ComodoMalware@#29ofe1tc5lsky
BitDefenderThetaGen:NN.ZemsilF.34126.Pm0@aCA1pxc
McAfee-GW-EditionBehavesLike.Win32.AdwareYontoo.jh
FireEyeGeneric.mg.b28324fa7ead5dae
EmsisoftTrojan.GenericKD.46936814 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.Gen
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/AgentTesla!ml
GDataTrojan.GenericKD.46936814
AhnLab-V3Trojan/Win.CrypterX-gen.C4625972
McAfeeAgentTesla-FDCV!B28324FA7EAD
MAXmalware (ai score=99)
MalwarebytesMalware.AI.4845824
IkarusTrojan-Spy.Keylogger.Snake
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/GenKryptik.FJTZ!tr
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml

How to remove Mal/Generic-S + Troj/Krypt-CI?

Mal/Generic-S + Troj/Krypt-CI removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment