Malware

MSIL/Kryptik.YLV removal tips

Malware Removal

The MSIL/Kryptik.YLV is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Kryptik.YLV virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine MSIL/Kryptik.YLV?


File Info:

crc32: 89DDCB63
md5: 858f1803292cd4716f1558392d70fe65
name: upload_file
sha1: b64e737b8e484b65f46daeb8ab07b516a9d968fe
sha256: a4b3f2e56eed3604a93d6f4705bc9631347f5166b661f37bc9ebb074ea5a50d5
sha512: 53458c8159aaca80f435ef3c4b0c729f54ea49c2cd5cb7fe5032dd6995d40fc79258b0f4991fe55e863852a1fd7cfa4d3acfb6822582fc0748b957b4201da2ef
ssdeep: 24576:ziD+RD5gAb1iB+BMavNbq2ltY4dmGh2DvRBsclSIwtURLDBC9IO:ziDyGAbE+KaxqyYmmtD5SztUR
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 Hewlett-Packard 2017
Assembly Version: 1.0.0.0
InternalName: F8hJ.exe
FileVersion: 1.0.0.0
CompanyName: Hewlett-Packard
LegalTrademarks:
Comments:
ProductName: CarRentalSystem
ProductVersion: 1.0.0.0
FileDescription: CarRentalSystem
OriginalFilename: F8hJ.exe

MSIL/Kryptik.YLV also known as:

Elasticmalicious (high confidence)
FireEyeGeneric.mg.858f1803292cd471
CylanceUnsafe
SangforMalware
BitDefenderThetaGen:NN.ZemsilF.34590.4m0@aSUYSMg
CyrenW32/Trojan.SW.gen!Eldorado
SymantecML.Attribute.HighConfidence
KasperskyUDS:DangerousObject.Multi.Generic
AlibabaTrojan:Win32/starter.ali1000139
AegisLabTrojan.Win32.Generic.4!c
IkarusTrojan.MSIL.Inject
MicrosoftTrojan:Win32/Wacatac.C!ml
ZoneAlarmUDS:DangerousObject.Multi.Generic
GDataWin32.Trojan-Stealer.MassLogger.XR5D9J
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Agensla.R354693
McAfeePWS-FCSU!858F1803292C
MalwarebytesTrojan.Injector
APEXMalicious
ESET-NOD32a variant of MSIL/Kryptik.YLV
SentinelOneDFI – Malicious PE
eGambitUnsafe.AI_Score_98%
FortinetMSIL/GenKryptik.EVNQ!tr
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_60% (W)
Qihoo-360Generic/HEUR/QVM03.0.04B0.Malware.Gen

How to remove MSIL/Kryptik.YLV?

MSIL/Kryptik.YLV removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment