Malware

MSIL/Kryptik.ACEK (file analysis)

Malware Removal

The MSIL/Kryptik.ACEK is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Kryptik.ACEK virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine MSIL/Kryptik.ACEK?


File Info:

crc32: 708347AE
md5: 6549649ac3173aca1bb5ed1a99810380
name: 6549649AC3173ACA1BB5ED1A99810380.mlw
sha1: 3c8c5a9699e8d979c8f83b53c7fed73737ed99e7
sha256: ec07f953fea536e8ae3a92b862b6fa0ab1e6d76369a8b3d1c07ee65bc3525dcb
sha512: c4a6d6deecf94d015bffb67529c2837a6b15db16857751b3310613e65ecb994d3ecdb71e25d2415e47ad8c808b7bf559fae4985d5175742600a208a2ef9c6a37
ssdeep: 24576:s8nMq2+b9eNU85/d123tDIIAaIOv0P2toOzX/bCsM/K8J:sd+b94EDI/aIOv0PFezTYn
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2019
Assembly Version: 1.0.0.0
InternalName: ExceptionHandlingClau.exe
FileVersion: 1.0.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: ControlLibrary
ProductVersion: 1.0.0.0
FileDescription: ControlLibrary
OriginalFilename: ExceptionHandlingClau.exe

MSIL/Kryptik.ACEK also known as:

LionicTrojan.Win32.Generic.m7QV
Elasticmalicious (high confidence)
DrWebTrojan.Inject4.14840
ALYacTrojan.GenericKD.37319080
CylanceUnsafe
SangforTrojan.MSIL.Taskun.gen
CrowdStrikewin/malicious_confidence_90% (W)
Cybereasonmalicious.699e8d
CyrenW32/MSIL_Kryptik.DSH.gen!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32a variant of MSIL/Kryptik.ACEK
APEXMalicious
AvastWin32:PWSX-gen [Trj]
KasperskyHEUR:Trojan.MSIL.Taskun.gen
BitDefenderTrojan.GenericKD.37319080
MicroWorld-eScanTrojan.GenericKD.37319080
TencentMsil.Trojan.Taskun.Wncr
Ad-AwareTrojan.GenericKD.37319080
SophosMal/Generic-S
ComodoTrojWare.Win32.UMal.rmnys@0
BitDefenderThetaGen:NN.ZemsilF.34050.an0@a4hClsm
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
FireEyeGeneric.mg.6549649ac3173aca
EmsisoftTrojan.Crypt (A)
SentinelOneStatic AI – Malicious PE
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:MSIL/AgentTesla.AM!MTB
ZoneAlarmHEUR:Trojan.MSIL.Taskun.gen
GDataTrojan.GenericKD.37319080
AhnLab-V3Trojan/Win.AgentTesla.R434889
McAfeeGenericRXPM-SA!6549649AC317
MAXmalware (ai score=99)
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_GEN.R06CH07GU21
IkarusWin32.SuspectCrc
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Kryptik.ZXG!tr
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Generic.HgIASZcA

How to remove MSIL/Kryptik.ACEK?

MSIL/Kryptik.ACEK removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment