Malware

MSIL/Kryptik.ZAM malicious file

Malware Removal

The MSIL/Kryptik.ZAM is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Kryptik.ZAM virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine MSIL/Kryptik.ZAM?


File Info:

crc32: 6D339AF3
md5: 6e55ad9ecd83831310d17d5d8b4702e8
name: 6E55AD9ECD83831310D17D5D8B4702E8.mlw
sha1: 9851ac8e52a557354831cfd04cbabf61ace1b793
sha256: 8daa411eb30ad00d9be98b72d66343cd681616040c1b825a4b35bfc2a27ee1de
sha512: cf36f288e61df0399367ea48c8f194f4e71463b51ec04df729d87d8f520cd7e2ab0ea4dbaebd1f8b078e8d3f2a6dbdad78477068d9e5115c079fcfb6c761e216
ssdeep: 24576:gw0v/yGEMXNX7XCPae3EVUygXWVs9UdKsOrsnB6DHAa/cORj+k:gwAyGPNXGxRZXW/yrsnB6Dga/cORj
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Sinopharm-Beijing 2020 (C)
Assembly Version: 1.0.88.8
InternalName: TypeNameParser.exe
FileVersion: 1.0.88.8
CompanyName: Sinopharm-Beijing
LegalTrademarks:
Comments: CanSino Biologics
ProductName: Entrance Exam
ProductVersion: 1.0.88.8
FileDescription: Entrance Exam
OriginalFilename: TypeNameParser.exe

MSIL/Kryptik.ZAM also known as:

Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.35717761
FireEyeGeneric.mg.6e55ad9ecd838313
ALYacTrojan.Agent.FormBook
MalwarebytesTrojan.MalPack.PNG
SangforMalware
K7AntiVirusTrojan ( 00574a6b1 )
BitDefenderTrojan.GenericKD.35717761
K7GWTrojan ( 00574a6b1 )
Cybereasonmalicious.e52a55
BitDefenderThetaGen:NN.ZemsilF.34700.2m0@aGHVm0p
CyrenW32/Trojan.NLAC-0084
SymantecTrojan.Gen.2
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
KasperskyHEUR:Trojan-Spy.MSIL.Noon.gen
AegisLabTrojan.MSIL.Noon.l!c
Ad-AwareTrojan.GenericKD.35717761
SophosMal/Generic-S + Troj/Kryptik-OZ
F-SecureTrojan.TR/AD.Swotter.biwhp
DrWebTrojan.Packed2.42726
TrendMicroTrojanSpy.MSIL.TESLA.THLADBO
McAfee-GW-EditionRDN/Generic.hbg
EmsisoftTrojan.GenericKD.35717761 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.Gen
AviraTR/AD.Swotter.biwhp
KingsoftWin32.Troj.Generic_a.a.(kcloud)
MicrosoftTrojan:Win32/Ymacco.AA82
GridinsoftTrojan.Win32.Kryptik.oa
ZoneAlarmHEUR:Trojan-Spy.MSIL.Noon.gen
GDataTrojan.GenericKD.35717761
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Kryptik.R357775
McAfeeRDN/Generic.hbg
CylanceUnsafe
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/Kryptik.ZAM
TrendMicro-HouseCallTrojanSpy.MSIL.TESLA.THLADBO
MAXmalware (ai score=100)
FortinetMSIL/Kryptik.ZAM!tr
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (W)
Qihoo-360Generic/Trojan.Spy.beb

How to remove MSIL/Kryptik.ZAM?

MSIL/Kryptik.ZAM removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment