Malware

MSIL/Kryptik.ADXZ information

Malware Removal

The MSIL/Kryptik.ADXZ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Kryptik.ADXZ virus can do?

  • Dynamic (imported) function loading detected
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine MSIL/Kryptik.ADXZ?


File Info:

name: 2541E7E9C4425FC3FB45.mlw
path: /opt/CAPEv2/storage/binaries/6693a5506d8f6ffd3108beec0cdc3305e0d2ef87882d430ce66922640ba36672
crc32: B47DA56F
md5: 2541e7e9c4425fc3fb4541824681e144
sha1: dde0ff1b87d4cd3e49f9bb124daabd5bc633726f
sha256: 6693a5506d8f6ffd3108beec0cdc3305e0d2ef87882d430ce66922640ba36672
sha512: 5964ccbdcdccbc2bf05ee32c4e414fb2deb984d3703c378ff65b9b33baee5a019a43da553161ffa155ca39d335d0968eab68b06cad78e65558741aaaf7590569
ssdeep: 24576:NdcLC8AKpoYaeTMesk332ZkUnXLwC+tZdYPSWitM8pDBuDv94ithW/rVsMpVJssh:7qCI7DTJ3okUXLgTdYPSWitM8pDBuDvu
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T19B559D847FF98E1AE2DD177AF83806C1A7B5BC12E9A7E30B94831CB50D5A3544C913B6
sha3_384: aa1f2407ff348b48f009b8559930796389e5736071a1a6b99d084771cafbd8286c5cad1177cc4efc95e29477f262f8d9
ep_bytes: ff250020400000000000000000000000
timestamp: 2022-01-05 17:50:36

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription:
FileVersion: 1.0.0.0
InternalName: Oubqihc.exe
LegalCopyright:
LegalTrademarks:
OriginalFilename: Oubqihc.exe
ProductName:
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

MSIL/Kryptik.ADXZ also known as:

LionicTrojan.MSIL.PsDownload.a!c
MicroWorld-eScanTrojan.GenericKD.38457529
FireEyeTrojan.GenericKD.38457529
McAfeeArtemis!2541E7E9C442
AlibabaTrojanDownloader:MSIL/PsDownload.e199ab1e
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.ADXZ
APEXMalicious
AvastWin32:DropperX-gen [Drp]
KasperskyHEUR:Trojan-Downloader.MSIL.PsDownload.gen
BitDefenderTrojan.GenericKD.38457529
Ad-AwareTrojan.GenericKD.38457529
EmsisoftTrojan.GenericKD.38457529 (B)
TrendMicroTROJ_GEN.R002C0WA922
McAfee-GW-EditionArtemis!Trojan
SophosMal/Generic-S
Paloaltogeneric.ml
GDataTrojan.GenericKD.38457529
GridinsoftRansom.Win32.Sabsik.vb
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
AhnLab-V3Downloader/Win.MSIL.R463087
ALYacTrojan.GenericKD.38457529
MAXmalware (ai score=80)
TrendMicro-HouseCallTROJ_GEN.R002C0WA922
SentinelOneStatic AI – Suspicious PE
eGambitTrojan.Generic
FortinetW32/Malicious_Behavior.VEX
AVGWin32:DropperX-gen [Drp]
PandaTrj/GdSda.A

How to remove MSIL/Kryptik.ADXZ?

MSIL/Kryptik.ADXZ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment