Malware

Should I remove “MSIL/Kryptik.YSY”?

Malware Removal

The MSIL/Kryptik.YSY is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Kryptik.YSY virus can do?

  • Network activity detected but not expressed in API logs

How to determine MSIL/Kryptik.YSY?


File Info:

crc32: 7512F1FE
md5: 025544a9014cf1667e8a1d4ff68da253
name: 025544A9014CF1667E8A1D4FF68DA253.mlw
sha1: 0123853e7960cdae4f3ad95945b4ec86adbb93c6
sha256: 2858bfcb9388b05049df45459ee60bf96be0b0d75a3be34cf3c00f57ec9f4469
sha512: a22db404c3a154339b3cd6d4a4227f319f6cb99d103346856ffd6fd249fe08bace4f528f185edc25c0672ae03b2e14c87b31b0b2d0728372c5893821b5a43068
ssdeep: 6144:3cMR5P4uE1KMtqm/0XWJYoukAlD0o2c3zZOaoRzkZRjdnLor7/7Sr9sTFaOxSxy:3n5PqttqmMGJYvlxzgaoG3dnG7SeG2+
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2010 F7G5?9JAF>2=>JA7AIB2F
Assembly Version: 1.0.0.0
InternalName: use5.exe
FileVersion: 7.10.14.17
CompanyName: F7G5?9JAF>2=>JA7AIB2F
Comments: :6;C>4;FA4F5DH9D@88B;3
ProductName: 5G5C9985D<@B5@
ProductVersion: 7.10.14.17
FileDescription: 5G5C9985D<@B5@
OriginalFilename: use5.exe

MSIL/Kryptik.YSY also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Razy.789039
FireEyeGeneric.mg.025544a9014cf166
ALYacGen:Variant.Razy.789039
MalwarebytesTrojan.PCrypt.MSIL.Generic
BitDefenderGen:Variant.Razy.789039
Cybereasonmalicious.e7960c
BitDefenderThetaGen:NN.ZemsilF.34658.Im0@ayFp0xb
CyrenW32/MSIL_Kryptik.AHY.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
CynetMalicious (score: 100)
AlibabaTrojan:MSIL/Kryptik.dacb8b2c
Ad-AwareGen:Variant.Razy.789039
SophosML/PE-A
McAfee-GW-EditionArtemis!Trojan
EmsisoftGen:Variant.Razy.789039 (B)
AviraTR/Kryptik.uiuzf
ArcabitTrojan.Razy.DC0A2F
GDataGen:Variant.Razy.789039
McAfeePWS-FCTC!025544A9014C
MAXmalware (ai score=82)
ESET-NOD32a variant of MSIL/Kryptik.YSY
FortinetMSIL/Kryptik.YSY!tr
WebrootW32.Trojan.Gen
AVGFileRepMalware
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_80% (D)
Qihoo-360HEUR/QVM03.0.85D9.Malware.Gen

How to remove MSIL/Kryptik.YSY?

MSIL/Kryptik.YSY removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment