Malware

About “MSIL/Kryptik.VFM” infection

Malware Removal

The MSIL/Kryptik.VFM is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Kryptik.VFM virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine MSIL/Kryptik.VFM?


File Info:

crc32: 29D4FD06
md5: 1a05c8a7891e0e1438aae807477c9ecd
name: usuusususus.exe
sha1: faddbd46ef838a869b70ca961d1fac5bc88ee499
sha256: b1d13748c6f535f06ff5fe732ad3ed8f45e07b7ad927dd104d520967732977ce
sha512: 99857f6926ceae83663afab57cedbf74b7b4da6485e4f099de8a099ba1511edf42196db28fa9f01f3733cef185d6ba95cd77a618e835a654d92c8def5a6957c4
ssdeep: 24576:qk70Trc/Ocry3soxKlKGcdM1iowWDOQMrWr9:qkQTAnyc9KGhxwWDOfU9
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright 1991-2019 Adobe. All rights reserved.
InternalName: MediaFoundation
FileVersion: 16.1.1.4
CompanyName: Adobe
Build Number: 4
ProductName: Adobe After Effects CC 2019
ProductVersion: 16.1.1
FileDescription: Adobe After Effects CC 2019
OriginalFilename: MediaFoundation.dll
Translation: 0x0409 0x04b0

MSIL/Kryptik.VFM also known as:

BkavW32.AIDetectVM.malware
DrWebTrojan.DownLoader33.22752
MicroWorld-eScanGen:Variant.Razy.624632
FireEyeGeneric.mg.1a05c8a7891e0e14
McAfeeArtemis!1A05C8A7891E
MalwarebytesTrojan.MalPack
VIPRETrojan.Win32.Generic!BT
SangforMalware
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderGen:Variant.Razy.624632
K7GWTrojan ( 005635901 )
BitDefenderThetaGen:NN.ZexaF.34104.1q0@aujlpLl
SymantecML.Attribute.HighConfidence
TrendMicro-HouseCallTROJ_GEN.R002H0CCR20
AvastWin32:Trojan-gen
GDataGen:Variant.Razy.624632
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojan:Win32/runner.ali1000123
AegisLabTrojan.Win32.FrauDrop.tpH3
RisingTrojan.Kryptik!8.8 (CLOUD)
Endgamemalicious (high confidence)
SophosMal/Generic-S
F-SecureHeuristic.HEUR/AGEN.1010034
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
EmsisoftGen:Variant.Razy.624632 (B)
IkarusTrojan.MSIL.Crypt
MaxSecureTrojan.Malware.300983.susgen
AviraHEUR/AGEN.1010034
MAXmalware (ai score=89)
Antiy-AVLTrojan/Win32.Wacatac
MicrosoftTrojan:Win32/Occamy.C
ArcabitTrojan.Razy.D987F8
ZoneAlarmHEUR:Trojan.Win32.Generic
Acronissuspicious
ALYacGen:Variant.Razy.624632
Ad-AwareGen:Variant.Razy.624632
CylanceUnsafe
APEXMalicious
ESET-NOD32a variant of MSIL/Kryptik.VFM
TencentWin32.Trojan.Generic.Dwth
SentinelOneDFI – Malicious PE
FortinetW32/Generic.VFM!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
Qihoo-360HEUR/QVM10.1.3119.Malware.Gen

How to remove MSIL/Kryptik.VFM?

MSIL/Kryptik.VFM removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment