Malware

About “Mal/Generic-S + Troj/Kryptik-QI” infection

Malware Removal

The Mal/Generic-S + Troj/Kryptik-QI is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Mal/Generic-S + Troj/Kryptik-QI virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Mal/Generic-S + Troj/Kryptik-QI?


File Info:

crc32: CC94D052
md5: 70747f5955df1f8a7012cbe5d37c516f
name: 70747F5955DF1F8A7012CBE5D37C516F.mlw
sha1: 8a4edf21b160f31bc6d9b1d02d343e3bf5fcfd2e
sha256: 6a042012f4233929b8f5fbf73f4b958e39f2fb60d73c1d758753dd07508ef8e1
sha512: 0d84482c736c33eb5e8fc48ef1350dde530b6fbc76440dde906e31cf681631581642cd601bffbaab31fd54296489754814548f56d6c3e2a2c532b1af37309a90
ssdeep: 12288:tsIMVhqj5BHYF8SMXtiz87ZEtxRqJPv2kZdHDxlu0hKkXR:tsKDHYFfMXw8WxRYVZNDXJhKkR
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
Assembly Version: 10.0.11.0
InternalName: x646x5979.exe
FileVersion: 10.0.11.0
CompanyName: Microsoft Corporation
LegalTrademarks:
Comments:
ProductName: Registry Editor Pro
ProductVersion: 10.0.11.0
FileDescription: Registry Editor Pro
OriginalFilename: x646x5979.exe

Mal/Generic-S + Troj/Kryptik-QI also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.45476887
FireEyeGeneric.mg.70747f5955df1f8a
CAT-QuickHealTrojan.Multi
McAfeeGenericRXNJ-JP!70747F5955DF
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.45476887
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.1b160f
BitDefenderThetaGen:NN.ZemsilF.34760.Om0@a84rrAl
CyrenW32/MSIL_Kryptik.CAS.gen!Eldorado
SymantecTrojan.Gen.MBT
ESET-NOD32Win32/Formbook.AA
APEXMalicious
AvastWin32:PWSX-gen [Trj]
KasperskyHEUR:Trojan-Spy.MSIL.Noon.gen
AlibabaTrojan:Win32/csharp.ali2000008
AegisLabTrojan.Multi.Generic.4!c
Ad-AwareTrojan.GenericKD.45476887
SophosMal/Generic-S + Troj/Kryptik-QI
F-SecureTrojan.TR/Kryptik.vbkpz
DrWebTrojan.Siggen11.57608
TrendMicroTrojan.MSIL.MALREP.THAAEBA
McAfee-GW-EditionBehavesLike.Win32.Generic.jc
EmsisoftTrojan.GenericKD.45476887 (B)
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
AviraTR/Kryptik.vbkpz
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:MSIL/Tnega.BK!MTB
GridinsoftRansom.Win32.Wacatac.oa
ArcabitTrojan.Generic.D2B5EC17
AhnLab-V3Malware/Gen.RL_Reputation.R363400
ZoneAlarmHEUR:Trojan-Spy.MSIL.Noon.gen
GDataTrojan.GenericKD.45476887
CynetMalicious (score: 100)
VBA32TScope.Trojan.MSIL
ALYacTrojan.Agent.FormBook
MalwarebytesTrojan.MalPack
PandaTrj/GdSda.A
TrendMicro-HouseCallTrojan.MSIL.MALREP.THAAEBA
RisingTrojan.Formbook!8.F858 (TFE:C:aG6Fqpm6mTB)
IkarusTrojan.MSIL.Crypt
eGambitUnsafe.AI_Score_92%
FortinetMSIL/Kryptik.ZFR!tr
WebrootW32.Trojan.Gen
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_80% (D)
Qihoo-360Generic/HEUR/QVM03.0.A2CF.Malware.Gen

How to remove Mal/Generic-S + Troj/Kryptik-QI?

Mal/Generic-S + Troj/Kryptik-QI removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment