Trojan

Trojan.MSIL.Crypt.hxhe information

Malware Removal

The Trojan.MSIL.Crypt.hxhe is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.MSIL.Crypt.hxhe virus can do?

  • Dynamic (imported) function loading detected
  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid
  • Binary compilation timestomping detected

How to determine Trojan.MSIL.Crypt.hxhe?


File Info:

name: 603699A56094BA2C77BD.mlw
path: /opt/CAPEv2/storage/binaries/e038902ae00db822d645fdccf7fb99d28d79fdcc46a792e537d0dd5b4cebdd06
crc32: EA5FCE58
md5: 603699a56094ba2c77bd04c4f09b86b3
sha1: be93d73d8eafba6e25e33e502da63ced66991304
sha256: e038902ae00db822d645fdccf7fb99d28d79fdcc46a792e537d0dd5b4cebdd06
sha512: 89f428cd76fa1548b12c20eed47a350f3347683c17301cb47f847d3c8e97c5fb725c3add5ae2b1354f336754ed88e59e1f7d3213e0368ca92680294ca3308429
ssdeep: 96:W8/uVemVk3te9vHEokGm9Varla5SJ9PwsF21RlH+mDynUW0lncrDg+dcjIaO+xQH:Wyu/wt+EoJ4CXJ9sjDrzZcPgecjIcc
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T15602F668E7C49721DABA0AB74CA353440374E389D967DF1F54DDA01A2E532A809933B4
sha3_384: 0ebd73ad62fdcad16dd01f40ed0a17f1a2bfa814b8f3dd7c7eb2bd5f313f5b5c85350abdc4a2699fca3b8b7a0d342b12
ep_bytes: ff2500204000554889e5ffd15d4889ec
timestamp: 2052-07-22 17:32:29

Version Info:

Translation: 0x0000 0x04b0
Comments:
CompanyName:
FileDescription: 百分之50工程
FileVersion: 1.0.0.0
InternalName: 百分之50工程.exe
LegalCopyright: Copyright © 2021
LegalTrademarks:
OriginalFilename: 百分之50工程.exe
ProductName: 百分之50工程
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Trojan.MSIL.Crypt.hxhe also known as:

LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanTrojan.GenericKD.47621006
FireEyeTrojan.GenericKD.47621006
McAfeeArtemis!603699A56094
CylanceUnsafe
CrowdStrikewin/malicious_confidence_60% (W)
AlibabaTrojan:MSIL/GenKryptik.d89eeab8
K7GWTrojan ( 700000121 )
K7AntiVirusTrojan ( 700000121 )
BitDefenderThetaGen:NN.ZemsilCO.34084.am0@a0KgPrl
CyrenW32/MSIL_Kryptik.GGG.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of MSIL/GenKryptik.FEXG
APEXMalicious
Paloaltogeneric.ml
KasperskyTrojan.MSIL.Crypt.hxhe
BitDefenderTrojan.GenericKD.47621006
AvastWin32:TrojanX-gen [Trj]
TencentMsil.Trojan.Crypt.Wkvm
Ad-AwareTrojan.GenericKD.47621006
SophosMal/Generic-S
TrendMicroTROJ_GEN.R002C0WLD21
McAfee-GW-EditionArtemis!Trojan
EmsisoftTrojan.GenericKD.47621006 (B)
IkarusTrojan.MSIL.Krypt
GDataTrojan.GenericKD.47621006
JiangminTrojan.MSIL.alsgi
AviraHEUR/AGEN.1206867
GridinsoftRansom.Win32.Sabsik.sa
MicrosoftTrojan:Win32/Tiggre!rfn
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.47621006
MAXmalware (ai score=83)
MalwarebytesTrojan.Crypt.MSIL
TrendMicro-HouseCallTROJ_GEN.R002C0WLD21
SentinelOneStatic AI – Suspicious PE
FortinetMSIL/GenKryptik.FEXG!tr
AVGWin32:TrojanX-gen [Trj]
PandaTrj/GdSda.A
MaxSecureTrojan.Malware.300983.susgen

How to remove Trojan.MSIL.Crypt.hxhe?

Trojan.MSIL.Crypt.hxhe removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment