Malware

Should I remove “MSIL/GenKryptik.EGQS”?

Malware Removal

The MSIL/GenKryptik.EGQS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/GenKryptik.EGQS virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine MSIL/GenKryptik.EGQS?


File Info:

crc32: F0F8A0E3
md5: 3d968f009e2dfccba896abc2b1af7e23
name: goziecry.exe
sha1: 6a88f23ee981bb4ffa288e609a0f5ed2f122c8bc
sha256: e68d09ad68e4158b0565ba4b1586757cad7650c43d928fb3b4549f1ecaf8fa99
sha512: bb2619ce70a872365616543b2cdc92a7d6f7b3e5329c204bcd646680858e6c5aaffbb421d297a27f9ef027ef20410a62af4cf6cbe6e83b779c9781cd8f774211
ssdeep: 3072:uo6qAYsSvG0DieQBQU9uCDqaJgXIYDjYHT9SjRnS0LpapHM0EmmGKVXFyZdfAa9:IStQBPpe4IjRnS0Lpaps0Em7TSUejF
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright: 2.1r2, xa9 2000-2005 Maxprog
InternalName:
FileVersion: 2.1..2
CompanyName:
Country:
ProductName:
ProductVersion: 2.1r2
FileDescription: eMail Extractor v2.1r2
Release: Final
OriginalFilename: eMail Extractor.exe

MSIL/GenKryptik.EGQS also known as:

MicroWorld-eScanTrojan.GenericKD.42868072
FireEyeGeneric.mg.3d968f009e2dfccb
Qihoo-360Generic/Trojan.Spy.fbd
McAfeeArtemis!3D968F009E2D
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
AegisLabTrojan.MSIL.Hoaki.l!c
K7AntiVirusTrojan ( 0056081c1 )
BitDefenderTrojan.GenericKD.42868072
K7GWTrojan ( 0056081c1 )
CrowdStrikewin/malicious_confidence_60% (W)
TrendMicroTROJ_GEN.R002C0DCN20
BitDefenderThetaGen:NN.ZemsilF.34100.Jm0@aKZ@hoii
SymantecTrojan.Gen.2
TrendMicro-HouseCallTROJ_GEN.R002C0DCN20
AvastWin32:CrypterX-gen [Trj]
GDataMSIL.Packed.Skaldring.D
KasperskyHEUR:Trojan-Spy.MSIL.Hoaki.gen
AlibabaTrojan:Win32/csharp.ali2000008
APEXMalicious
RisingSpyware.Hoaki!8.1E31 (CLOUD)
Ad-AwareTrojan.GenericKD.42868072
SophosTroj/Fareit-KCK
ComodoMalware@#4aa4a7eu31mk
F-SecureTrojan.TR/AD.LokiBot.xofbk
Invinceaheuristic
McAfee-GW-EditionRDN/Generic PWS.y
Trapminemalicious.high.ml.score
EmsisoftTrojan.Crypt (A)
CyrenW32/MSIL_Kryptik.AJK.gen!Eldorado
WebrootW32.Trojan.Gen
AviraTR/AD.LokiBot.xofbk
MAXmalware (ai score=99)
Antiy-AVLTrojan[Spy]/MSIL.Hoaki
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D28E1D68
ZoneAlarmHEUR:Trojan-Spy.MSIL.Hoaki.gen
MicrosoftTrojan:Win32/Tiggre!rfn
AhnLab-V3Trojan/Win32.Agent.R284273
Acronissuspicious
ALYacTrojan.GenericKD.42868072
MalwarebytesTrojan.Crypt.MSIL
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/GenKryptik.EGQS
TencentMsil.Trojan-spy.Hoaki.Lnes
IkarusTrojan.MSIL.Krypt
FortinetMSIL/GenKryptik.EGOA!tr
AVGWin32:CrypterX-gen [Trj]
MaxSecureTrojan.Malware.300983.susgen

How to remove MSIL/GenKryptik.EGQS?

MSIL/GenKryptik.EGQS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment