Malware

Should I remove “MSIL/Kryptik.JJC”?

Malware Removal

The MSIL/Kryptik.JJC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Kryptik.JJC virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine MSIL/Kryptik.JJC?


File Info:

name: 1BB798AAEE2D0CA46622.mlw
path: /opt/CAPEv2/storage/binaries/8a5646b74a42005247bcafe45717ba377ec8b5ed1b8e3dafcfda69bb17040b6d
crc32: 9383A3EE
md5: 1bb798aaee2d0ca46622c40385375430
sha1: a1d132d539afd22a505993dd79c82674926e2bcc
sha256: 8a5646b74a42005247bcafe45717ba377ec8b5ed1b8e3dafcfda69bb17040b6d
sha512: 9512bf7f781fa440e3d8cad4c812fec5c78c7d24b3823202ab5d86e95d50271d0cbf464457b4b3c48a4e1b695907afc07076aa63db7961af0c8439d398c0a09c
ssdeep: 1536:1qY6ju92xPQTqVmIfsckOasZp0dZp7EbpLj:1qY6xmqAIfsckONy7EbpLj
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T117A38E0837D88B17DBFD4F3859B011414BF2E1175B17EB0E4EC959B6297B3850A60BAB
sha3_384: 38b89527f5413a6771eb3303f3ec01e86e7d36707a04a7ce15e767fef099bf4b23baf7d3ed78907eec2a7d2afc46711d
ep_bytes: ff250020400000000000000000000000
timestamp: 2011-12-03 18:46:59

Version Info:

Translation: 0x0000 0x04b0
Comments: Administration
CompanyName: plugin-hwid
FileDescription: Application
FileVersion: 1.1.1.1
InternalName: HardwareID.exe
LegalCopyright: CopyrightHere
LegalTrademarks: TrademarkHere
OriginalFilename: HardwareID.exe
ProductName: AdministrationProduct
ProductVersion: 1.1.1.1
Assembly Version: 2.2.2.2

MSIL/Kryptik.JJC also known as:

LionicTrojan.MSIL.Agent.4!c
MicroWorld-eScanGen:Heur.MSIL.Androm.3
FireEyeGeneric.mg.1bb798aaee2d0ca4
ALYacGen:Heur.MSIL.Androm.3
Cylanceunsafe
ZillyaTrojan.Agent.Win32.287135
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojanPSW:MSIL/Mintluks.ed76884e
K7GWPassword-Stealer ( 00499dba1 )
K7AntiVirusPassword-Stealer ( 00499dba1 )
ArcabitTrojan.MSIL.Androm.3
BitDefenderThetaGen:NN.ZemsilF.36662.gm0@aqFg9fm
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Kryptik.JJC
APEXMalicious
CynetMalicious (score: 99)
KasperskyTrojan.MSIL.Agent.jyt
BitDefenderGen:Heur.MSIL.Androm.3
NANO-AntivirusTrojan.Win32.Kryptik.dcmfoi
AvastWin32:Trojan-gen
TencentMsil.Trojan.Agent.Tdkl
EmsisoftGen:Heur.MSIL.Androm.3 (B)
F-SecureTrojan.TR/Spy.Gen
DrWebTrojan.AVKill.15678
VIPREGen:Heur.MSIL.Androm.3
McAfee-GW-EditionArtemis!Trojan
Trapminesuspicious.low.ml.score
SophosMal/Generic-S
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Generic.lmuf
WebrootW32.Trojan.Gen
AviraTR/Spy.Gen
Antiy-AVLTrojan/MSIL.Agent
XcitiumMalware@#3lcmrmq4p3j0o
MicrosoftPWS:MSIL/Mintluks.A
ZoneAlarmTrojan.MSIL.Agent.jyt
GDataGen:Heur.MSIL.Androm.3
McAfeeArtemis!1BB798AAEE2D
MAXmalware (ai score=94)
VBA32TScope.Trojan.MSIL
MalwarebytesGeneric.Malware/Suspicious
PandaTrj/CI.A
RisingSpyware.KeyLogger!1.CA52 (CLASSIC)
IkarusTrojan-Spy.MSIL.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Kryptik.F
AVGWin32:Trojan-gen
DeepInstinctMALICIOUS

How to remove MSIL/Kryptik.JJC?

MSIL/Kryptik.JJC removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment