Malware

Should I remove “MSIL/GenKryptik.FNCO”?

Malware Removal

The MSIL/GenKryptik.FNCO is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/GenKryptik.FNCO virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine MSIL/GenKryptik.FNCO?


File Info:

crc32: D4C0784D
md5: 298c0e0e6b2b092bf30d8096ab0ffe02
name: 298C0E0E6B2B092BF30D8096AB0FFE02.mlw
sha1: 875fa3f18857ee8e933875af990bc98e5083eb6d
sha256: 204dca3bdab875faaa44fc19dadddf3a76eecf3bf27869b70e6c99dfd8c59070
sha512: 1bce7872512078deeb3af46b1df9e303480af4d442249101f3956775347cbd06230e76cb9285ca89ca7989fe3d3c69e947512dfc5a5ce939bcfaf481820cbb56
ssdeep: 6144:W87RSCHyk1dZVfBhzX0FYwzjVLgjI4wzfZEJRblTZ2uaAJScHj0N86PENUHN:W87RSHSdPZhVwzjVLgjI2nb1Sw0
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2020
Assembly Version: 1.0.0.0
InternalName: MethodRent.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: MyNoteApp
ProductVersion: 1.0.0.0
FileDescription: MyNoteApp
OriginalFilename: MethodRent.exe

MSIL/GenKryptik.FNCO also known as:

K7AntiVirusRiskware ( 00584baa1 )
LionicTrojan.MSIL.Noon.l!c
Elasticmalicious (high confidence)
CAT-QuickHealTrojan.FormBook
ALYacTrojan.GenericKD.37958173
MalwarebytesTrojan.Crypt.MSIL
CrowdStrikewin/malicious_confidence_80% (W)
AlibabaTrojanSpy:MSIL/FormBook.ba99d3ec
K7GWRiskware ( 00584baa1 )
Cybereasonmalicious.18857e
CyrenW32/MSIL_Kryptik.AFN.gen!Eldorado
SymantecScr.Malcode!gdn34
ESET-NOD32a variant of MSIL/GenKryptik.FNCO
APEXMalicious
AvastWin32:PWSX-gen [Trj]
CynetMalicious (score: 100)
KasperskyHEUR:Trojan-Spy.MSIL.Noon.gen
BitDefenderTrojan.GenericKD.37958173
MicroWorld-eScanTrojan.GenericKD.37958173
Ad-AwareTrojan.GenericKD.37958173
SophosMal/Generic-S
Comodo.UnclassifiedMalware@0
BitDefenderThetaGen:NN.ZemsilF.34266.Qm0@aSaMZsb
TrendMicroTROJ_FRS.0NA103K821
McAfee-GW-EditionBehavesLike.Win32.Generic.jh
FireEyeGeneric.mg.298c0e0e6b2b092b
EmsisoftTrojan.GenericKD.37958173 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojanSpy.MSIL.bxgm
Antiy-AVLTrojan[Spy]/MSIL.Noon
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:MSIL/FormBook.KA!MTB
ArcabitTrojan.Generic.D243321D
GDataTrojan.GenericKD.37958173
McAfeePWS-FCUF!298C0E0E6B2B
MAXmalware (ai score=80)
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R002H07K521
YandexTrojan.AvsArher.bToZAi
IkarusTrojan-Spy.Win32.FormBook
FortinetMSIL/GenKryptik.FNAJ!tr
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml

How to remove MSIL/GenKryptik.FNCO?

MSIL/GenKryptik.FNCO removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment