Malware

What is “MSIL/GenKryptik.GLOG”?

Malware Removal

The MSIL/GenKryptik.GLOG is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/GenKryptik.GLOG virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Reads data out of its own binary image
  • CAPE extracted potentially suspicious content
  • Drops a binary and executes it
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Deletes executed files from disk

How to determine MSIL/GenKryptik.GLOG?


File Info:

name: 9782B6F21237F0CFC564.mlw
path: /opt/CAPEv2/storage/binaries/2c34a6fb0defe948be10832d243d8084bd00a7fe25812d3ee959be609a65cd04
crc32: E404538E
md5: 9782b6f21237f0cfc564ff4c245173c4
sha1: 3c88cff8632e7807b8848411d24a1b79082cfb45
sha256: 2c34a6fb0defe948be10832d243d8084bd00a7fe25812d3ee959be609a65cd04
sha512: c000c860c7e307d0905e9c7a30901d8b3b13f4cb43bad496d94a3d7a71162264b13801b5460ee93708b0ad3198d24176118750fc38d71ffb339b6404b0d2c7be
ssdeep: 24576:/DkUNi1EvGiW1uzCVRBSx62k2VhBhCDTnLGShBO:/DkUrOiWIzCVRUpkOhBo7O
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1BD251220BAC484B2D9B758345EE2A731AF3CB93017755FEB5B440A1E4F204C16A36F6B
sha3_384: 6117d4cc4d11fd1b803b3d75c95866bb9154635040a5488ddac1e8aa4302480530ed8d325e06d1bbc0418c0bc1e3c963
ep_bytes: e8dc040000e978feffffe98a46000055
timestamp: 2023-05-29 16:03:38

Version Info:

0: [No Data]

MSIL/GenKryptik.GLOG also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Zenpak.tspc
Elasticmalicious (high confidence)
DrWebTrojan.PackedNET.2160
MicroWorld-eScanTrojan.GenericKD.68007028
FireEyeGeneric.mg.9782b6f21237f0cf
CAT-QuickHealTrojan.GenericFC.S30550302
SkyhighBehavesLike.Win32.Generic.dc
ALYacTrojan.GenericKD.68007028
Cylanceunsafe
SangforBackdoor.Msil.Kryptik.Vy7v
AlibabaBackdoor:MSIL/GenKryptik.157c585f
K7GWRiskware ( 0040eff71 )
K7AntiVirusRiskware ( 0040eff71 )
ArcabitTrojan.Generic.D40DB474
VirITTrojan.Win32.Genus.RWB
SymantecTrojan Horse
ESET-NOD32a variant of MSIL/GenKryptik.GLOG
APEXMalicious
TrendMicro-HouseCallTROJ_GEN.R002C0DAO24
AvastWin32:TrojanX-gen [Trj]
KasperskyBackdoor.MSIL.Agent.aezf
BitDefenderTrojan.GenericKD.68007028
NANO-AntivirusTrojan.Win32.GenKryptik.jyhgyx
TencentMsil.Backdoor.Agent.Twhl
EmsisoftTrojan.GenericKD.68007028 (B)
VIPRETrojan.GenericKD.68007028
TrendMicroTROJ_GEN.R002C0DAO24
SophosMal/Generic-R
Paloaltogeneric.ml
MAXmalware (ai score=89)
GoogleDetected
VaristW32/Agen.GHVH-6183
Antiy-AVLTrojan/MSIL.GenKryptik
KingsoftWin32.Hack.Unknown.a
XcitiumMalware@#1c2ikzuok2tm4
MicrosoftTrojan:MSIL/Taskun.AAEN!MTB
ZoneAlarmBackdoor.MSIL.Agent.aezf
GDataTrojan.GenericKD.68007028
CynetMalicious (score: 100)
McAfeeRDN/Leonem
VBA32TrojanSpy.Cordimik
MalwarebytesGeneric.Crypt.Trojan.DDS
PandaTrj/GdSda.A
RisingMalware.Obfus/MSIL@AI.100 (RDM.MSIL2:M/P/Iojxq5dNkBx4vPJv5w)
YandexTrojan.Igent.b0rt7p.7
IkarusTrojan.MSIL.Inject
MaxSecureTrojan.Malware.211316761.susgen
FortinetMSIL/Stealer.36680!tr
AVGWin32:TrojanX-gen [Trj]
DeepInstinctMALICIOUS
alibabacloudMalware

How to remove MSIL/GenKryptik.GLOG?

MSIL/GenKryptik.GLOG removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment