Malware

MSIL/GenKryptik.FJOB removal tips

Malware Removal

The MSIL/GenKryptik.FJOB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/GenKryptik.FJOB virus can do?

  • Presents an Authenticode digital signature
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine MSIL/GenKryptik.FJOB?


File Info:

crc32: D0EA07FE
md5: 9f131b2c9238dec27437d330d4b2b872
name: 9F131B2C9238DEC27437D330D4B2B872.mlw
sha1: 0827b4cb6ffd24850ca8a8ba3ef75b8c6b569560
sha256: 64edc2494a61e5b657886e07f21822ec6106819b4eec3e5eb441e5419ca7b316
sha512: ad6586e46da4ef4847d5d0a076cde205ebd9cc846cefbd74cd83763be6b5238dc6202ad3ec2d494bedca767607208efa6ea0ce26eae23ab7cf50c9275463a0c5
ssdeep: 6144:6LwjnBbJLowAaANJhJnB9bhYaIRYafI9EaiqZOSOojO4aeJhUphfyvjCxycr:6UbBNowMZgYFaamSRjSez880ym
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: xa9 Microsoft Corporation. All rights reserved.
Assembly Version: 21.150.725.1
InternalName: Sonytec.exe
FileVersion: 21.150.725.1
CompanyName: Microsoft Corporation
LegalTrademarks:
Comments: Microsoft OneDrive (32 bit) Setup
ProductName: Microsoft OneDrive
ProductVersion: 21.150.725.1
FileDescription: Microsoft OneDrive (32 bit) Setup
OriginalFilename: Sonytec.exe

MSIL/GenKryptik.FJOB also known as:

Elasticmalicious (high confidence)
DrWebTrojan.Siggen14.65261
CylanceUnsafe
SangforRiskware.Win32.Agent.ky
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 005817521 )
K7AntiVirusTrojan ( 005817521 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/GenKryptik.FJOB
APEXMalicious
AvastWin32:RATX-gen [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Spy.MSIL.Stealer.gen
BitDefenderTrojan.GenericKD.37487438
MicroWorld-eScanTrojan.GenericKD.46870190
TencentMsil.Trojan-spy.Stealer.Hupf
Ad-AwareTrojan.GenericKD.37487438
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZemsilF.34110.Lm2@ay3pBjp
FireEyeGeneric.mg.9f131b2c9238dec2
EmsisoftTrojan.GenericKD.46870190 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Kryptik.twqoo
eGambitUnsafe.AI_Score_61%
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
GDataTrojan.GenericKD.46870190
AhnLab-V3Trojan/Win.MSILKrypt.C4609851
McAfeeAgentTesla-FDAW!9F131B2C9238
MAXmalware (ai score=84)
MalwarebytesTrojan.Crypt.MSIL
PandaTrj/GdSda.A
IkarusTrojan.MSIL.Krypt
FortinetMSIL/GenKryptik.FJOB!tr
AVGWin32:RATX-gen [Trj]
Paloaltogeneric.ml

How to remove MSIL/GenKryptik.FJOB?

MSIL/GenKryptik.FJOB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment