Malware

How to remove “MSIL/GenKryptik.EYQG”?

Malware Removal

The MSIL/GenKryptik.EYQG is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/GenKryptik.EYQG virus can do?

  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine MSIL/GenKryptik.EYQG?


File Info:

crc32: 3175CB45
md5: b0cd11cdb27c3873c167849f66575ea1
name: B0CD11CDB27C3873C167849F66575EA1.mlw
sha1: 0963fc3d7b83852eb496439c995c62c6deba0f5a
sha256: 3bc677cc5b49e7b46557a8ae8989658466afe3f62926c720499a90875760280d
sha512: 4fc7cfbe4aaf6e173476bcee9bc61857501919a533bcc17aa6ac972ba2f4087b83e252b9ddae4b4745ed85782263434b2dbd1e442af39c614c74d5a5469db162
ssdeep: 24576:IGLaXhazkrm8p5R/ddjC19Muf/pBd0M80fZdD/cil:gXIzE/ddjiHf/dbfZdD/cil
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright: DigiCert Copyright (C) 2013. All rights reserved.
FileVersion: 2.3.5.2
CompanyName: DigiCert, Inc.
LegalTrademarks: 20b56095 bc88 4fd5 b9e2 5dc0d515b764
Comments: 67c55c82 dd66 4357 a24e 0732d8db35b9
ProductName: DigiCert Certificate Utility for Windowsxa9
ProductVersion: 2.3.5.2
FileDescription: DigiCert Certificate Utility for Windowsxa9
Guid: 14a95e91-46a3-46b4-a754-3755f16a4fa4
Translation: 0x0000 0x04e4

MSIL/GenKryptik.EYQG also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.35766329
FireEyeGeneric.mg.b0cd11cdb27c3873
ALYacTrojan.GenericKD.35766329
MalwarebytesTrojan.MalPack
K7AntiVirusTrojan ( 00574dab1 )
BitDefenderTrojan.GenericKD.35766329
K7GWTrojan ( 00574dab1 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZemsilF.34700.5n0@aG73Fjhi
CyrenW32/Trojan.ZMEP-4930
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Backdoor.MSIL.Remcos.gen
AlibabaTrojan:Win32/Kryptik.ali2000016
ViRobotTrojan.Win32.Z.Remcos.1996800
AegisLabTrojan.MSIL.Remcos.m!c
TencentMsil.Backdoor.Remcos.Pezl
Ad-AwareTrojan.GenericKD.35766329
EmsisoftTrojan.GenericKD.35766329 (B)
ComodoMalware@#kn7bsig3game
F-SecureTrojan.TR/AD.Remcos.jrrvh
DrWebTrojan.Siggen11.55827
TrendMicroTROJ_GEN.R002C0WLM20
McAfee-GW-EditionBehavesLike.Win32.Generic.tt
SophosMal/Generic-S
IkarusTrojan-Spy.Keylogger.AgentTesla
JiangminBackdoor.MSIL.ebah
eGambitUnsafe.AI_Score_99%
AviraTR/AD.Remcos.jrrvh
KingsoftWin32.Hack.Undef.(kcloud)
MicrosoftBackdoor:Win32/Remcos.AC!MTB
GridinsoftTrojan.Win32.Kryptik.oa
ArcabitTrojan.Generic.D221C039
ZoneAlarmHEUR:Backdoor.MSIL.Remcos.gen
GDataTrojan.GenericKD.35766329
CynetMalicious (score: 100)
McAfeeArtemis!B0CD11CDB27C
MAXmalware (ai score=88)
VBA32TScope.Trojan.MSIL
CylanceUnsafe
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/GenKryptik.EYQG
TrendMicro-HouseCallTROJ_GEN.R002C0WLM20
YandexTrojan.GenKryptik!ynL7Q+Aca8s
SentinelOneStatic AI – Malicious PE
FortinetMSIL/Injector.VGF!tr
AVGWin32:Malware-gen
Cybereasonmalicious.d7b838
Paloaltogeneric.ml
Qihoo-360Generic/Backdoor.23a

How to remove MSIL/GenKryptik.EYQG?

MSIL/GenKryptik.EYQG removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment