Malware

MSIL/Kryptik.YDQ information

Malware Removal

The MSIL/Kryptik.YDQ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Kryptik.YDQ virus can do?

  • Presents an Authenticode digital signature
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine MSIL/Kryptik.YDQ?


File Info:

crc32: D56BCE68
md5: c6f59449169eba9dea14270e41f502bc
name: upload_file
sha1: 33dba5fa0e7aaae084d6d659e7e7eb22a3be61d1
sha256: d41670ad9b64f44b8e09c303751eb7c6785e85a4049f443841ac7e590170b79b
sha512: 638589498d132667e12520790baa42c5887ae99d93b3606bc32bd0ce8ae3e65575ee25e9c9a6670ba1625c1e2fd4e7b60780da952c850b4db1a83438e2b1d585
ssdeep: 1536:T/oPrPwVwNQ2nRFFITrELYLAax9AcpegeNBhDe4edJpoGlNJAogUfU:orXRFFInELYLAax93zcBha3JKKNJAoI
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

LegalCopyright: xa9 x415x415x8c46. All rights reserved.
Assembly Version: 2.7.4.8
FileVersion: 4.1.8.1
CompanyName: x5a1cx41bx8c46
LegalTrademarks: x8c46x5a1cx415
Comments: x8c46x41bx415 x8c46x8c46x5a1c
ProductName: x8c46x827ex6bd4 x5a1cx6bd4x8c46
ProductVersion: 2.7.4.8
FileDescription: x8c46x827ex41b x827ex415x827e
OriginalFilename: x8c46x827ex6bd4 x5a1cx6bd4x8c46.exe
Translation: 0x0409 0x0514

MSIL/Kryptik.YDQ also known as:

Elasticmalicious (high confidence)
McAfeeArtemis!C6F59449169E
CrowdStrikewin/malicious_confidence_60% (W)
APEXMalicious
KasperskyUDS:DangerousObject.Multi.Generic
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.c6f59449169eba9d
MicrosoftTrojan:Win32/Woreflint.A!cl
ZoneAlarmUDS:DangerousObject.Multi.Generic
BitDefenderThetaGen:NN.ZemsilF.34298.om1@a0MPSWci
CylanceUnsafe
ESET-NOD32a variant of MSIL/Kryptik.YDQ
AVGFileRepMalware
Cybereasonmalicious.a0e7aa

How to remove MSIL/Kryptik.YDQ?

MSIL/Kryptik.YDQ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment