Trojan

What is “Trojan.Crypt.MBR”?

Malware Removal

The Trojan.Crypt.MBR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Crypt.MBR virus can do?

  • The binary likely contains encrypted or compressed data.
  • Likely installs a bootkit via raw harddisk modifications
  • Network activity detected but not expressed in API logs

How to determine Trojan.Crypt.MBR?


File Info:

crc32: 46378040
md5: f5ad006a8147be798b8861d544fcce0a
name: F5AD006A8147BE798B8861D544FCCE0A.mlw
sha1: 7d8d1cb508779c3fa1e16887ddb8812430e1f885
sha256: b1f682aaa4cb127fe2134de7002bda2e95d1d75af3d902f97594788fa93eff5f
sha512: 075f0bb6719f6c01b647f403f2dc02ec5301471b19fc7a759a811dfbd433f972efc5e9c3155f8b3a039a538681d406a0fc2467aaf9b8e1396ce2912e5a0e98bb
ssdeep: 24576:nsyJxnLpO1FZAidbN0PHwBnoIFke1UZMmG8enwsRepmTkeah0E:nsy/LpO1HABJ553GhCk6hh
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Crypt.MBR also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00538c461 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Zusy.S3173729
ALYacGen:Variant.Zusy.291852
CylanceUnsafe
SangforVirus.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:Win32/Occamy.288d54a9
K7GWTrojan ( 00538c461 )
Cybereasonmalicious.a8147b
CyrenW32/S-fed3cbf5!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Agent.ZTX
APEXMalicious
AvastMBR:Mykings-A [Boot]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Zusy.291852
NANO-AntivirusTrojan.Win32.Zusy.fgtilf
MicroWorld-eScanGen:Variant.Zusy.291852
TencentMalware.Win32.Gencirc.10b0b6b2
Ad-AwareGen:Variant.Zusy.291852
SophosMal/Generic-S
ComodoMalware@#dgekduu4tudk
BitDefenderThetaAI:Packer.9638566D1F
McAfee-GW-EditionBehavesLike.Win32.Generic.th
FireEyeGeneric.mg.f5ad006a8147be79
EmsisoftGen:Variant.Zusy.291852 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.DiskWriter.gn
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan/Generic.ASMalwS.26CC5E1
KingsoftWin32.Heur.KVMH008.a.(kcloud)
MicrosoftTrojan:Win32/Occamy.C
ArcabitTrojan.Zusy.D4740C
SUPERAntiSpywareTrojan.Agent/Gen-Crypt
ZoneAlarmHEUR:Trojan.Win32.DarkGalaxy.gen
GDataGen:Variant.Zusy.291852
TACHYONTrojan/W32.Agent.1202176.U
AhnLab-V3Trojan/Win32.PowerLocker.R256626
Acronissuspicious
McAfeeDropper-FVU!F5AD006A8147
MAXmalware (ai score=80)
VBA32Trojan.DiskWriter
MalwarebytesTrojan.Crypt.MBR
PandaTrj/CI.A
RisingTrojan.MBR!1.B32C (CLASSIC)
YandexTrojan.GenAsa!EXxR7tAG0AU
IkarusTrojan.Win32.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Midie.DB96!tr
AVGMBR:Mykings-A [Boot]

How to remove Trojan.Crypt.MBR?

Trojan.Crypt.MBR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment