Malware

MSIL/Kryptik.AATG removal guide

Malware Removal

The MSIL/Kryptik.AATG is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Kryptik.AATG virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine MSIL/Kryptik.AATG?


File Info:

crc32: 942B4AF0
md5: e2cce68a81438b2ceeea09aadeaddb41
name: E2CCE68A81438B2CEEEA09AADEADDB41.mlw
sha1: 5e175d1dcf82318aa059d2c0095c6bdd0c810d49
sha256: 86926685c52fc0eb80f8d256eff2fd0e34b1d4580c5861ec230b90370d68b9fa
sha512: 6771fbbb1f996c49ff66db7ddc83c6caccaa1685a01c83665f2e11b6c1b0946c2c7d76b16150f7ac39400ed66434be0453debbb50bd9b3bc3b91d74ae64f688a
ssdeep: 12288:B1fxhwL8mLAHefRIZtbVqrTwqEZ78RmzG6k9p8TE:jZyJAH/ZtxqEZ780zyp2
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: (C) 2021 philandro Software GmbH
Assembly Version: 6.2.3.0
InternalName: ps.exe
FileVersion: 6.2.3.0
CompanyName: philandro Software GmbH
LegalTrademarks:
Comments: AnyDesk
ProductName: AnyDesk
ProductVersion: 6.2.3.0
FileDescription: AnyDesk
OriginalFilename: ps.exe

MSIL/Kryptik.AATG also known as:

CynetMalicious (score: 100)
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (W)
Cybereasonmalicious.dcf823
CyrenW32/MSIL_Kryptik.CWO.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.AATG
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
KasperskyHEUR:Trojan-Downloader.MSIL.Seraph.gen
BitDefenderTrojan.GenericKD.36850358
MicroWorld-eScanTrojan.GenericKD.36850358
Ad-AwareTrojan.GenericKD.36850358
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZemsilF.34688.1m0@aKT66vi
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
FireEyeTrojan.GenericKD.36850358
EmsisoftTrojan.GenericKD.36850358 (B)
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:Win32/AgentTesla!ml
GDataTrojan.GenericKD.36850358
McAfeeArtemis!E2CCE68A8143
MAXmalware (ai score=82)
TrendMicro-HouseCallTROJ_GEN.R002H07E521
RisingTrojan.AntiVM!1.CF63 (CLOUD)
FortinetMalicious_Behavior.SB
AVGWin32:MalwareX-gen [Trj]
Paloaltogeneric.ml

How to remove MSIL/Kryptik.AATG?

MSIL/Kryptik.AATG removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment