Malware

MSIL/Kryptik.ADPG removal tips

Malware Removal

The MSIL/Kryptik.ADPG is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Kryptik.ADPG virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous .NET characteristics

How to determine MSIL/Kryptik.ADPG?


File Info:

name: 95EEDA4172B1E5EC7E67.mlw
path: /opt/CAPEv2/storage/binaries/dcd2e00fc2a47d732fd3d0d79fd224caac8bee02053a1b02ba4e51e022a949f9
crc32: FDE25D96
md5: 95eeda4172b1e5ec7e67b7026e3d3ae7
sha1: 0a446de0e0138ab94b41488053476ff58874dc8e
sha256: dcd2e00fc2a47d732fd3d0d79fd224caac8bee02053a1b02ba4e51e022a949f9
sha512: b27d10778543f9496bc228b48c1f35d1d4473a83b08af4659c7210f1dc6d967477435679a360bdaaff03b4f555a3b8724ee54a3fc58bf63d24e6343b62dbcda4
ssdeep: 12288:i0fdPu8n+3R/RSX+mq/PoDwTyfq1lY41HoeXlLEHyXtX5tKhCAVlg1FvIwxDRbMx:xuHmHmCV61xIwxNKzNiFablojvXtdm
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F4154B7987A4D23AF5CD90F054ACA1909FF4902E4697FB560A5CA4F60FC63F649A38C3
sha3_384: 3e2e86da60762966145ea863cae457af958693338b110c9ba1961f2b166eacd50a8237202cff4a1afb93fe612546cdaf
ep_bytes: ff250020400000000000000000000000
timestamp: 2021-11-29 11:12:35

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: WindowsIdenti.exe
LegalCopyright:
OriginalFilename: WindowsIdenti.exe
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

MSIL/Kryptik.ADPG also known as:

Elasticmalicious (high confidence)
DrWebTrojan.Siggen15.58095
MicroWorld-eScanTrojan.GenericKD.47514393
FireEyeGeneric.mg.95eeda4172b1e5ec
ALYacTrojan.GenericKD.47514393
MalwarebytesMalware.AI.2294393506
CrowdStrikewin/malicious_confidence_90% (W)
AlibabaTrojan:Win32/Kryptik.ali2000016
K7GWTrojan ( 0058b1d51 )
K7AntiVirusTrojan ( 0058b1d51 )
ArcabitTrojan.Generic.D2D50319
BitDefenderThetaGen:NN.ZemsilCO.34062.4m0@aG1wCsh
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.ADPG
TrendMicro-HouseCallTROJ_FRS.VSNTKU21
AvastWin32:PWSX-gen [Trj]
KasperskyHEUR:Trojan-Spy.MSIL.Noon.gen
BitDefenderTrojan.GenericKD.47514393
Ad-AwareTrojan.GenericKD.47514393
EmsisoftTrojan.GenericKD.47514393 (B)
Comodo.UnclassifiedMalware@0
TrendMicroTROJ_FRS.VSNTKU21
SophosMal/Generic-S
Paloaltogeneric.ml
KingsoftWin32.Troj.Undef.(kcloud)
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:Win32/AgentTesla!ml
ViRobotTrojan.Win32.Z.Undef.926208
GDataTrojan.GenericKD.47514393
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.C4799547
VBA32TScope.Trojan.MSIL
MAXmalware (ai score=82)
APEXMalicious
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/GenKryptik.FOEM!tr
AVGWin32:PWSX-gen [Trj]
Cybereasonmalicious.0e0138
PandaTrj/GdSda.A

How to remove MSIL/Kryptik.ADPG?

MSIL/Kryptik.ADPG removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment