Malware

About “MSIL/Kryptik.RNT” infection

Malware Removal

The MSIL/Kryptik.RNT is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Kryptik.RNT virus can do?

  • Creates RWX memory
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine MSIL/Kryptik.RNT?


File Info:

crc32: E60A05A1
md5: 1b00af999ce8c1b136694303b8f2daac
name: 1B00AF999CE8C1B136694303B8F2DAAC.mlw
sha1: 392580c55c167670cfa32c91a55199c8a24de31a
sha256: 6bee66282777c4255e21dbae79d5adc0795e4598ab36dff48fe20d9be8193032
sha512: 6f7a2a6c3525afc977db1d245e8e061a0103a42d75295ae5397ef7de4b8d41ef620e2f48570027b92a1c12928b493b4905081b8ffe025d75da3f54cb19d540f7
ssdeep: 1536:PYSl0DyyyyyRAcF2krFXmsIeWwwsHW/K+Ooyg1QI6Ia03ly6758gxixz9+uKHgq:PYSl0DyyyyyRN2qFXm5eWwwsHEfO5g1
type: PE32 executable (console) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

0: [No Data]

MSIL/Kryptik.RNT also known as:

Elasticmalicious (high confidence)
CynetMalicious (score: 99)
ALYacGen:Variant.Ransom.Samsam.8
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 0054dae31 )
Cybereasonmalicious.99ce8c
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/Kryptik.RNT
APEXMalicious
AvastWin32:Trojan-gen
BitDefenderGen:Variant.Ransom.Samsam.8
MicroWorld-eScanGen:Variant.Ransom.Samsam.8
TencentWin32.Trojan.Dropper.Dxcy
Ad-AwareGen:Variant.Ransom.Samsam.8
SophosML/PE-A
BitDefenderThetaGen:NN.ZemsilF.34790.fiW@aKHA@tm
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.1b00af999ce8c1b1
EmsisoftGen:Variant.Ransom.Samsam.8 (B)
SentinelOneStatic AI – Malicious PE
AviraTR/Dropper.Gen
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Ransom.Samsam.8
AhnLab-V3Malware/Win32.RL_Generic.C4282143
McAfeeArtemis!1B00AF999CE8
MAXmalware (ai score=81)
IkarusTrojan.MSIL.Crypt
FortinetMSIL/Kryptik.RNT!tr
AVGWin32:Trojan-gen
Qihoo-360HEUR/QVM03.0.569F.Malware.Gen

How to remove MSIL/Kryptik.RNT?

MSIL/Kryptik.RNT removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment