Malware

What is “MSIL/Kryptik.ACMN”?

Malware Removal

The MSIL/Kryptik.ACMN is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Kryptik.ACMN virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine MSIL/Kryptik.ACMN?


File Info:

crc32: DAEE293D
md5: 3c06ef80548abdb452c885502503df1e
name: 3C06EF80548ABDB452C885502503DF1E.mlw
sha1: 3358033063a00c41b0093361ab231dab6c99d06e
sha256: 8e74c0b9d1e48760d0f5af39d87e8ce3fadcb8f79d0061c9d8432cb27e222bc8
sha512: 35c3214f8b3b1cb9be7318b026b37c6164916979a06f40b77290fc53edcc7edfefa6a2d9f8f8af10f4a34a3bf68eb16074c2400b801db018142054c35f66796f
ssdeep: 6144:jfQVuZSDQSqZ+h23RqlRcdal8sBYb/VI+YgcLCLih9TOfyz3Oy4lWF0:jSuiQSWRqlluI+YPLC2Gfyz3OZO
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: xa9Firefox and Mozilla Developers; available under the MPL 2 license.
Assembly Version: 92.0.0.7897
InternalName: WZDAN#@R.exe
FileVersion: 92.0.0.7897
CompanyName: Mozilla Corporation
LegalTrademarks: Firefox is a Trademark of The Mozilla Foundation.
Comments: Firefox
ProductName: Firefox
ProductVersion: 92.0.0.7897
FileDescription: Firefox
OriginalFilename: WZDAN#@R.exe

MSIL/Kryptik.ACMN also known as:

LionicTrojan.MSIL.Seraph.a!c
Elasticmalicious (high confidence)
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_90% (W)
Cybereasonmalicious.063a00
CyrenW32/Jigsaw.A1.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.ACMN
APEXMalicious
KasperskyHEUR:Trojan.MSIL.Dnoper.gen
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZemsilF.34088.vm0@aytg7lb
McAfee-GW-EditionAgentTesla-FDAW!3C06EF80548A
FireEyeGeneric.mg.3c06ef80548abdb4
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_99%
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataWin32.Malware.Injector.Z2D1D9
McAfeeAgentTesla-FDAW!3C06EF80548A
MalwarebytesMachineLearning/Anomalous.96%
TrendMicro-HouseCallTROJ_GEN.R002H0CHI21
IkarusTrojan.Inject
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Kryptik.ABUB!tr
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Generic.HgIASakA

How to remove MSIL/Kryptik.ACMN?

MSIL/Kryptik.ACMN removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment