Malware

MSIL/Kryptik.AAHN removal tips

Malware Removal

The MSIL/Kryptik.AAHN is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Kryptik.AAHN virus can do?

  • The binary likely contains encrypted or compressed data.

How to determine MSIL/Kryptik.AAHN?


File Info:

crc32: 2EACAAC9
md5: 74665a908fd2649f760a5cf48d25282b
name: 74665A908FD2649F760A5CF48D25282B.mlw
sha1: a8d362dd1e5392ba5e3f72f74807ac744dfe3edf
sha256: 8512fc8573dfa04b285ab727c59db142972043d81866b485627bb5b15947af64
sha512: 2ff36bed943eced199e5bd0eff795284e6dd85c4d731f37fe1f33a72ad4741ab333ad2ce6ed1657273f928680c7e3d74fa2e12089cbb774a693e6ec35bdd0dcc
ssdeep: 24576:EsrahS+QiVkFvnL8zoUcBknmzM5cnSoq+zIsH5xAMLB2oJZlPPqW+dOMf4lYa:EsWhS+QiVkFvnL8zoUcBknD5cnSoq+z
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2014
Assembly Version: 1.0.0.0
InternalName: MetadataException.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: IT Helpdesk
ProductVersion: 1.0.0.0
FileDescription: IT Helpdesk
OriginalFilename: MetadataException.exe

MSIL/Kryptik.AAHN also known as:

K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
DrWebTrojan.PackedNET.636
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.36641071
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaTrojan:Win32/runner.ali1000123
K7GWRiskware ( 0040eff71 )
CyrenW32/Trojan.SW.gen!Eldorado
ESET-NOD32a variant of MSIL/Kryptik.AAHN
APEXMalicious
AvastWin32:PWSX-gen [Trj]
KasperskyHEUR:Backdoor.MSIL.Androm.gen
BitDefenderTrojan.GenericKD.36641071
MicroWorld-eScanTrojan.GenericKD.36641071
Ad-AwareTrojan.GenericKD.36641071
SophosMal/Generic-S
ComodoTrojWare.Script.UMal.nkrpf@0
BitDefenderThetaGen:NN.ZemsilF.34670.1m0@aa@nIcn
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
FireEyeGeneric.mg.74665a908fd2649f
EmsisoftTrojan.GenericKD.36641071 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.Gen
AviraTR/AD.AgentTesla.ypazh
KingsoftWin32.Hack.Undef.(kcloud)
MicrosoftBackdoor:MSIL/NanoBot.RKC!MTB
ArcabitTrojan.Generic.D22F192F
AegisLabTrojan.Win32.Malicious.4!c
ZoneAlarmHEUR:Backdoor.MSIL.Androm.gen
GDataTrojan.GenericKD.36641071
AhnLab-V3Malware/Win.Reputation.C4405834
McAfeeRDN/Generic BackDoor
MAXmalware (ai score=82)
MalwarebytesSpyware.AgentTesla
TrendMicro-HouseCallBackdoor.MSIL.ANDROM.USMAND621
IkarusTrojan.Inject
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Kryptik.AAHE!tr
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Heur.Generic.HwMAZQ4A

How to remove MSIL/Kryptik.AAHN?

MSIL/Kryptik.AAHN removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment