Malware

About “MSIL/Kryptik.ABWH” infection

Malware Removal

The MSIL/Kryptik.ABWH is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Kryptik.ABWH virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine MSIL/Kryptik.ABWH?


File Info:

crc32: 52CDEE46
md5: 00862d9d48cc080f755ffb8080ed34ca
name: 00862D9D48CC080F755FFB8080ED34CA.mlw
sha1: c0a7c9945df3a55c01d5441f3181533030542013
sha256: eef20ad084cce596d60be110ffa96a7cc93b5a38cbc2bbe773ca66ae771e4889
sha512: a7e561a95cae67031ce62665703a5a3784f030df199546e76344587db1e36fa4ffd303d861d7667d81e16d34e2c3e37e5271da4751a2c6d2ae8f9192ed3934d7
ssdeep: 12288:4CLzD1s7W+K90n5/aAJTS4+q0jyjU5EZDP0lbqzrIO20Nmy:xnD67WD0n5/DdKmw5EtkbqzzNm
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2021
Assembly Version: 1.0.0.0
InternalName: EvidenceEnumerat.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: HerreriaZar
ProductVersion: 1.0.0.0
FileDescription: HerreriaZar
OriginalFilename: EvidenceEnumerat.exe

MSIL/Kryptik.ABWH also known as:

K7AntiVirusTrojan ( 0057f2361 )
Elasticmalicious (high confidence)
DrWebTrojan.PackedNET.923
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.37209743
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojanSpy:MSIL/AgentTesla.0206b59a
K7GWTrojan ( 0057f2361 )
CyrenW32/Trojan.SW.gen!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32a variant of MSIL/Kryptik.ABWH
APEXMalicious
AvastWin32:PWSX-gen [Trj]
KasperskyHEUR:Backdoor.MSIL.Crysan.gen
BitDefenderTrojan.GenericKD.37209743
MicroWorld-eScanTrojan.GenericKD.37209743
TencentMsil.Backdoor.Crysan.Dba
Ad-AwareTrojan.GenericKD.37209743
SophosMal/Generic-S
ComodoTrojWare.Win32.Agent.rpleo@0
TrendMicroTROJ_GEN.R06CC0DG821
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
FireEyeGeneric.mg.00862d9d48cc080f
EmsisoftTrojan.GenericKD.37209743 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.Gen
AviraTR/AD.LokiBot.odaet
eGambitUnsafe.AI_Score_96%
KingsoftWin32.Hack.Undef.(kcloud)
MicrosoftTrojanSpy:MSIL/AgentTesla.RKC!MTB
GridinsoftTrojan.Win32.Agent.dd!n
ZoneAlarmHEUR:Backdoor.MSIL.Crysan.gen
GDataTrojan.GenericKD.37209743
AhnLab-V3Spyware/Win.AgentTesla.C4546310
McAfeeRDN/Loki
MAXmalware (ai score=84)
MalwarebytesTrojan.MalPack.PNG.Generic
PandaTrj/Agent.ALS
TrendMicro-HouseCallTROJ_GEN.R06CC0DG821
YandexTrojan.Igent.bWbJKJ.102
IkarusTrojan.MSIL.Krypt
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Kryptik.ABWE!tr
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Backdoor.Crysan.HwMAdCcA

How to remove MSIL/Kryptik.ABWH?

MSIL/Kryptik.ABWH removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment