Malware

MSIL/Kryptik.ZST removal guide

Malware Removal

The MSIL/Kryptik.ZST is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What MSIL/Kryptik.ZST virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine MSIL/Kryptik.ZST?


File Info:

crc32: D3194042
md5: 06ba8d20fc12d9994f22d0efd9c62f4d
name: 06BA8D20FC12D9994F22D0EFD9C62F4D.mlw
sha1: 859f16e8bed5b727472a8bb6df70c1e6e822c4a4
sha256: 1d380dfada55e561b147894bc58c64b6d7f14e44cfd069df0d15dcb2533e4880
sha512: adb9d0881a40dc1b529b948605b117c2e81b556477150786b15a1c35f78de9e9132566e9db6684c3c47288e59d7eb7e13a00bf61b424604a47cd12f6f5f0ee63
ssdeep: 12288:XMkAgdzBkKKkJAqZPQ82vth6f1NpQansFN3vI17fox8Hi2OoEJW+rglSb52iRTK:Xf3BKkyQPnTq1FNfmXi7HrUSboitu
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2009 by Dan Ariely
Assembly Version: 30.4.0.0
InternalName: TimerQueueTimer.exe
FileVersion: 30.4.0.0
CompanyName: Book by Dan Ariely
LegalTrademarks: HarperCollins
Comments: HarperCollins
ProductName: Predictably Irrational
ProductVersion: 30.4.0.0
FileDescription: Predictably Irrational
OriginalFilename: TimerQueueTimer.exe

MSIL/Kryptik.ZST also known as:

McAfeeArtemis!06BA8D20FC12
CylanceUnsafe
SangforTrojan.Win32.Save.a
Cybereasonmalicious.8bed5b
CyrenW32/MSIL_Kryptik.DFZ.gen!Eldorado
APEXMalicious
AvastWin32:PWSX-gen [Trj]
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
MicrosoftTrojan:Win32/Wacatac.B!ml
CynetMalicious (score: 100)
MalwarebytesMachineLearning/Anomalous.100%
ESET-NOD32a variant of MSIL/Kryptik.ZST
FortinetMSIL/AgentTesla.LKBL!tr
AVGWin32:PWSX-gen [Trj]

How to remove MSIL/Kryptik.ZST?

MSIL/Kryptik.ZST removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment