Malware

MSIL/Kryptik.LHV (file analysis)

Malware Removal

The MSIL/Kryptik.LHV is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Kryptik.LHV virus can do?

  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine MSIL/Kryptik.LHV?


File Info:

crc32: 543FA2AE
md5: a033ec056bf53007322ac8adb5db23e2
name: A033EC056BF53007322AC8ADB5DB23E2.mlw
sha1: 683c7c9c1f6d3437adcbec7a88f17d6413e4690e
sha256: 1a698ed6f73a84911bcbb3b1a6f73bf94b1a016bf280917d2cd71b971e9b2eb0
sha512: 3ab0c6ff30c9000a1f6f598b6ccbf799bc9f715f5ba8c2f263d62731ca9290c34ec1b31c12edec9349e116bd28bfd6074e08138c5810b69e7de49fcca2e962a9
ssdeep: 3072:D3gVpi5vOBQvYgnS3dTHW+DIWrvbYJMLhBsXy5GLX6cELQaIVv0bc:8VpWOBQ7AW+MUz8MdBsXyQYCV8g
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2004-2015 by Sandboxie Holdings, LLC
InternalName: Start
FileVersion: 5.14
CompanyName: Sandboxie Holdings, LLC
PrivateBuild:
LegalTrademarks:
Comments:
ProductName: Sandboxie
SpecialBuild:
ProductVersion: 5.14
FileDescription: Sandboxie Start
OriginalFilename: Start.exe
Translation: 0x0409 0x04b0

MSIL/Kryptik.LHV also known as:

K7AntiVirusTrojan ( 00519c691 )
LionicTrojan.MSIL.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Starter.2890
ClamAVWin.Packed.Starter-6862385-0
CAT-QuickHealTrojan.MsilFC.S6059267
ALYacTrojan.Starter.AIS
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderTrojan.Starter.AIS
K7GWTrojan ( 00519c691 )
Cybereasonmalicious.56bf53
CyrenW32/S-f5fd2081!Eldorado
SymantecTrojan.Gen.2
ESET-NOD32a variant of MSIL/Kryptik.LHV
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.MSIL.Generic
NANO-AntivirusTrojan.Win32.Starter.ewkkkb
MicroWorld-eScanTrojan.Starter.AIS
TencentMalware.Win32.Gencirc.10b0c5e4
Ad-AwareTrojan.Starter.AIS
SophosML/PE-A + Troj/MSIL-JAH
ComodoTrojWare.MSIL.Kryptik.LHV@7g8hpk
McAfee-GW-EditionBehavesLike.Win32.Generic.dh
FireEyeGeneric.mg.a033ec056bf53007
EmsisoftTrojan.Starter.AIS (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Starter.umvcm
eGambitUnsafe.AI_Score_94%
Antiy-AVLTrojan/Generic.ASMalwS.2375A4D
MicrosoftTrojan:Win32/Azorult!ml
GDataTrojan.Starter.AIS
AhnLab-V3Trojan/Win.Generic.R416448
Acronissuspicious
McAfeeGenericRXAQ-PN!A033EC056BF5
MAXmalware (ai score=83)
VBA32TScope.Trojan.MSIL
MalwarebytesBackdoor.Bladabindi
PandaTrj/CI.A
RisingTrojan.Kryptik!1.AF62 (CLASSIC)
YandexTrojan.Agent!ugCFGlxQm+4
IkarusTrojan.MSIL.Crypt
MaxSecureTrojan.Malware.11196064.susgen
FortinetMSIL/Injector.QTA!tr
Paloaltogeneric.ml

How to remove MSIL/Kryptik.LHV?

MSIL/Kryptik.LHV removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment