Malware

How to remove “MSIL/Kryptik.AJQX”?

Malware Removal

The MSIL/Kryptik.AJQX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Kryptik.AJQX virus can do?

  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine MSIL/Kryptik.AJQX?


File Info:

name: 403B94E69DD272655E1D.mlw
path: /opt/CAPEv2/storage/binaries/049b01c3468f856f1cc5e701506f8ad5875eab4730c0574413abbeddaed65e13
crc32: 028B848B
md5: 403b94e69dd272655e1dc4b824927f63
sha1: 084a254eb51be9db965f8a9b22384c2e27a49017
sha256: 049b01c3468f856f1cc5e701506f8ad5875eab4730c0574413abbeddaed65e13
sha512: 8a0ac3e38eea26e50ba5d373ea7cc33e6294457d3e44936ea2d87483e0c3a041908045cda4baf535f712ed288272bd52f9582f6e93e5eedbda87694b8f8be9f0
ssdeep: 98304:V+ac/ZaP17pPZNCo8tk2HF7LwHNTZouzZDHkP:V+a1xpl8tpHaHkuzVHm
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11106E14696635E33C39C3F7188D7542F52A1DA237A53EF0B3A0F20D1A9462708BD69F6
sha3_384: 8ded0fa66f08c8ddffd970f90d55bbc77aff8d43a1cb9f0c6aac96ef0246c7fad0a9e8dee8a443d74b1808b0318c2dc7
ep_bytes: ff250020400000000000000000000000
timestamp: 2023-09-07 23:40:57

Version Info:

CompanyName:
FileDescription:
FileVersion: 1.2.7.1277
InternalName: SpotifyStartupTask
LegalCopyright: Copyright (c) 2023, Spotify Ltd
OriginalFilename: SpotifyStartupTask.exe
ProductName:
ProductVersion: 1.2.7.1277
Translation: 0x0000 0x04b0

MSIL/Kryptik.AJQX also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacTrojan.MSIL.Basic.8.Gen
MalwarebytesBackdoor.DCRat
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
CyrenW32/MSIL_Agent.FVY.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.AJQX
APEXMalicious
ClamAVWin.Packed.Uztuby-10009381-0
KasperskyHEUR:Trojan.MSIL.Dnoper.gen
BitDefenderTrojan.MSIL.Basic.8.Gen
MicroWorld-eScanTrojan.MSIL.Basic.8.Gen
EmsisoftTrojan.MSIL.Basic.8.Gen (B)
F-SecureHeuristic.HEUR/AGEN.1323342
VIPRETrojan.MSIL.Basic.8.Gen
McAfee-GW-EditionBehavesLike.Win32.Generic.wc
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.403b94e69dd27265
IkarusTrojan.MSIL.Agent
JiangminTrojan.MSIL.aosme
AviraHEUR/AGEN.1323342
MicrosoftTrojan:Win32/Sabsik.TE.B!ml
ArcabitTrojan.MSIL.Basic.8.Gen
ZoneAlarmHEUR:Trojan.MSIL.Dnoper.gen
GDataTrojan.MSIL.Basic.8.Gen
GoogleDetected
AhnLab-V3Trojan/Win.Generic.C5484342
MAXmalware (ai score=83)
Cylanceunsafe
RisingTrojan.Dnoper!8.10CB3 (TFE:dGZlOg3hFw/p7lyDRw)
SentinelOneStatic AI – Malicious PE
BitDefenderThetaGen:NN.ZemsilF.36738.Mp0@aedq1tm
Cybereasonmalicious.eb51be
DeepInstinctMALICIOUS

How to remove MSIL/Kryptik.AJQX?

MSIL/Kryptik.AJQX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment