Malware

MSIL/GenKryptik.FZOY removal

Malware Removal

The MSIL/GenKryptik.FZOY is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/GenKryptik.FZOY virus can do?

  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine MSIL/GenKryptik.FZOY?


File Info:

name: B9485A5475ABF46EF3B7.mlw
path: /opt/CAPEv2/storage/binaries/ae5edda73ce8697a36d43894d55c8ac8089ee1532eba6620fce7d607af256f90
crc32: 6848D682
md5: b9485a5475abf46ef3b77ad255ca13ba
sha1: f2afb1af379d4910dccaf7d77eb061791fef7f05
sha256: ae5edda73ce8697a36d43894d55c8ac8089ee1532eba6620fce7d607af256f90
sha512: 4d1cde829f3e12d0e0b66a02d7be317da03efa5aa92f54b8a3558f7d52a340142389104032138baf2636655fac110572f251a61a71a1ae4dc7876b5feb52ecc9
ssdeep: 24576:f3Z5kXY+mzo3bvqy9rZPGepL+5tfRcyFYTQDjq8mIwo7gV:B5SlmzMSurZP1L+Hfq1kDhNw7
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T12D25F15AE2583B62F01307F549A5E7200777BB8A487CD3816CFAF1FA20BA3C55152E5B
sha3_384: e2b438ecd7c5d63720cdf5a726afae426c9181c07b5ce084a500dbca1c9f5f465cb2c254d399ec99967f43be739f1d8e
ep_bytes: ff250020400048533447380000000000
timestamp: 2103-05-22 06:30:37

Version Info:

Translation: 0x0000 0x04b0
Comments: Just math lol
CompanyName:
FileDescription: Matikka Peli
FileVersion: 1.0.0.0
InternalName: TNYz.exe
LegalCopyright: Copyright © Artturi Martynov 2019
LegalTrademarks:
OriginalFilename: TNYz.exe
ProductName: Matikka Peli
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

MSIL/GenKryptik.FZOY also known as:

BkavW32.AIDetectNet.01
Elasticmalicious (high confidence)
FireEyeGeneric.mg.b9485a5475abf46e
CylanceUnsafe
Cybereasonmalicious.f379d4
BitDefenderThetaGen:NN.ZemsilF.34606.8m0@aOKuG5f
SymantecScr.Malcode!gdn30
tehtrisGeneric.Malware
ESET-NOD32a variant of MSIL/GenKryptik.FZOY
APEXMalicious
KasperskyUDS:Trojan-Spy.MSIL.Noon.gen
AvastMalwareX-gen [Trj]
IkarusTrojan.MSIL.Inject
GoogleDetected
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
Acronissuspicious
VBA32OScope.Trojan.MSIL.Remcos.gen
MalwarebytesMalware.AI.4207272465
RisingTrojan.Generic/MSIL@AI.100 (RDM.MSIL:kSHp0PauMNhMiKPBJ/3gjA)
SentinelOneStatic AI – Suspicious PE
FortinetMSIL/Kryptik.AGAP!tr
AVGMalwareX-gen [Trj]
CrowdStrikewin/malicious_confidence_70% (D)

How to remove MSIL/GenKryptik.FZOY?

MSIL/GenKryptik.FZOY removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment