Malware

Troj/Krypt-CC (file analysis)

Malware Removal

The Troj/Krypt-CC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Troj/Krypt-CC virus can do?

  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz

How to determine Troj/Krypt-CC?


File Info:

crc32: 95B39D54
md5: 3046513ce6ab12268527142ddcc2f698
name: 3046513CE6AB12268527142DDCC2F698.mlw
sha1: f51efe726557bb8a576873aa965941d108b029ba
sha256: 192d52d8807fd64243d74985e911074509ba5a6e12e29a2fbb9604f884ca1bf9
sha512: 0f989eb4c1a2cc2956ca4a4c4875bab7f601414e33adcf9dd3f1e9709a73969470582fec12a4f53c37552f37ec6167e130e311a7dc429c82486bfaecd32e4397
ssdeep: 12288:No4c+oLjD0YUsdRlgZRKqGYdbC/0yVP4c1Bm8:+JfDxUsmQqjeBf
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: Copyright xa9 2011
Assembly Version: 1.1.0.0
InternalName: UCOMIEnumerab.exe
FileVersion: 1.1.0.0
CompanyName:
LegalTrademarks:
Comments:
ProductName: ggUI
ProductVersion: 1.1.0.0
FileDescription: ggUI
OriginalFilename: UCOMIEnumerab.exe

Troj/Krypt-CC also known as:

K7AntiVirusTrojan ( 0058180b1 )
DrWebTrojan.Packed2.43380
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.37490956
CylanceUnsafe
K7GWTrojan ( 0058180b1 )
Cybereasonmalicious.26557b
CyrenW32/Trojan.GPX.gen!Eldorado
ESET-NOD32a variant of MSIL/Kryptik.ACPR
AvastWin32:PWSX-gen [Trj]
ClamAVWin.Packed.Pwsx-9889941-0
KasperskyHEUR:Trojan-Spy.MSIL.Noon.gen
BitDefenderTrojan.GenericKD.37490956
MicroWorld-eScanTrojan.GenericKD.37490956
Ad-AwareTrojan.GenericKD.37490956
SophosTroj/Krypt-CC
TrendMicroTrojanSpy.MSIL.NEGASTEAL.SMG
McAfee-GW-EditionAgentTesla-FDBQ!3046513CE6AB
FireEyeGeneric.mg.3046513ce6ab1226
EmsisoftTrojan.Crypt (A)
JiangminTrojanSpy.MSIL.bsdt
AviraTR/Kryptik.zevlm
Antiy-AVLTrojan/Generic.ASMalwS.3483F47
MicrosoftTrojan:MSIL/AgentTesla.COZ!MTB
GridinsoftSpy.Win32.Keylogger.dd!n
ArcabitTrojan.Generic.D23C110C
GDataTrojan.GenericKD.37490956
AhnLab-V3Trojan/Win.MSILKrypt.R439085
McAfeeAgentTesla-FDBQ!3046513CE6AB
MAXmalware (ai score=83)
VBA32TScope.Trojan.MSIL
MalwarebytesTrojan.MalPack.PNG.Generic
PandaTrj/GdSda.A
TrendMicro-HouseCallTrojanSpy.MSIL.NEGASTEAL.SMG
YandexTrojan.Kryptik!JiwinZ99XVU
IkarusTrojan.MSIL.Inject
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/GenKryptik.FJTZ!tr
AVGWin32:PWSX-gen [Trj]

How to remove Troj/Krypt-CC?

Troj/Krypt-CC removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment