Malware

What is “MSIL/Kryptik.ACPS”?

Malware Removal

The MSIL/Kryptik.ACPS is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Kryptik.ACPS virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine MSIL/Kryptik.ACPS?


File Info:

crc32: F5C706D1
md5: b9f878c5f4abfe2ddab833370a415d96
name: B9F878C5F4ABFE2DDAB833370A415D96.mlw
sha1: 4c2a8ce97f0205a8826f21353b3420a990d058e7
sha256: 82ffff63aff4d930ecf5a02c0d7406a2ff645d9ed725727bfb073d3fade0b287
sha512: 15c11c00836ba17ef3c792bd46720b52549d9059923650921869f6346d5e07a6fc8ef552c11d0b1e007a1035fa764bda6137ba9b0d9d4a6ca722644e941218a0
ssdeep: 6144:4DnpYN/H2JqVTBQ/ivjjv5Z0rFysYpkJBfdjjHcF5DQjGzbaigcU:EnON/WJkBQ6hSrksJ58bDgd
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright 1984-2018 Adobe Systems Incorporated and its licensors. All rights reserved.
Assembly Version: 19.10.20069.49826
InternalName: Unicredit 27.08.2021.exe
FileVersion: 19.10.20069.49826
CompanyName: Adobe Systems Incorporated
LegalTrademarks:
Comments: Adobe Acrobat DC
ProductName: Adobe Acrobat DC
ProductVersion: 19.10.20069.49826
FileDescription: Adobe Acrobat DC
OriginalFilename: Unicredit 27.08.2021.exe

MSIL/Kryptik.ACPS also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Trojan.Heur.IEC.908d4036d15
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
Cybereasonmalicious.5f4abf
CyrenW32/MSIL_Dropper.A.gen!Eldorado
ESET-NOD32a variant of MSIL/Kryptik.ACPS
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
KasperskyUDS:Trojan-Downloader.MSIL.Seraph.gen
BitDefenderGen:Trojan.Heur.IEC.908d4036d15
MicroWorld-eScanGen:Trojan.Heur.IEC.908d4036d15
Ad-AwareGen:Trojan.Heur.IEC.908d4036d15
SophosML/PE-A
BitDefenderThetaAI:Packer.AADB81EC1F
FireEyeGeneric.mg.b9f878c5f4abfe2d
EmsisoftGen:Trojan.Heur.IEC.908d4036d15 (B)
SentinelOneStatic AI – Malicious PE
MicrosoftTrojan:Win32/Woreflint.A!cl
GDataMSIL.Backdoor.ASyncRAT.24PXHK
MAXmalware (ai score=88)
MalwarebytesMachineLearning/Anomalous.95%
FortinetMSIL/Kryptik.ACPS!tr
AVGWin32:MalwareX-gen [Trj]

How to remove MSIL/Kryptik.ACPS?

MSIL/Kryptik.ACPS removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment