Malware

Crypt.61 information

Malware Removal

The Crypt.61 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Crypt.61 virus can do?

  • At least one process apparently crashed during execution
  • Authenticode signature is invalid

How to determine Crypt.61?


File Info:

name: D2458DE328B603FDBD26.mlw
path: /opt/CAPEv2/storage/binaries/b3f75fffe8e601ebda7fb72ede442df333a09c629d91fe260f9445f17cb63900
crc32: 85369551
md5: d2458de328b603fdbd266c2ce6c2c55a
sha1: 57eb1b4c38a5ded6bc2d95417497677d44125216
sha256: b3f75fffe8e601ebda7fb72ede442df333a09c629d91fe260f9445f17cb63900
sha512: a4700e171fd7488e0388440da0cc0bc4c90d197ee8c8083ea450d0b8a61981027be4ad0da78792ba6c96448e8da7aea9e1963bdc6386d65b4c7caef6f3a48233
ssdeep: 3072:puRfmYAYT4MBrvZzfAlkM5/hh9JvAXOUxxFQHSIbcJhSLFxTL7mIoyki5Dr/dmhY:payY0iW1h98xmHSIaGTLJHETzTcV6Q
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E354E0CB973A8303D467A17887324DDF9E39B304FA84639C850A6E78C8195EE733E955
sha3_384: f052a84d9dacc9e051c00fb0536a812a863189b8d4ddb3094e9b25aed0f143f4d2c9393a65aaf939c3501788bc80db82
ep_bytes: 8b3d10ba43008b0d88ba430033f9890d
timestamp: 2011-03-08 07:57:00

Version Info:

CompanyName: Promise Technology, Inc.
FileDescription: Elite Glib Finch
FileVersion: 9.9
InternalName: Grove Juan Boils
OriginalFilename: Xskm6rma.exe
ProductName: Adele
ProductVersion: 9.9
Translation: 0x0409 0x04b0

Crypt.61 also known as:

BkavW32.AIDetect.malware2
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
FireEyeGeneric.mg.d2458de328b603fd
CAT-QuickHealTrojanPWS.Zbot.Y
McAfeeArtemis!D2458DE328B6
CylanceUnsafe
SangforTrojan.Win32.Generic.ky
K7AntiVirusTrojan ( 003616731 )
AlibabaTrojan:Win32/Kryptik.8330b6f9
K7GWTrojan ( 003616731 )
Cybereasonmalicious.328b60
BitDefenderThetaGen:NN.ZexaF.34212.ru1@a4Fzq!ci
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.ABJN
Paloaltogeneric.ml
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Crypt.61
NANO-AntivirusTrojan.Win32.Zbot.rhngw
MicroWorld-eScanGen:Variant.Crypt.61
AvastWin32:Reveton-Y [Trj]
TencentWin32.Trojan.Crypt.Woph
Ad-AwareGen:Variant.Crypt.61
EmsisoftGen:Variant.Crypt.61 (B)
DrWebTrojan.Proxy2.222
VIPRELookslike.Win32.Sirefef.zh (v)
McAfee-GW-EditionBehavesLike.Win32.Dropper.dh
SophosMal/Generic-S
APEXMalicious
GDataGen:Variant.Crypt.61
JiangminTrojan.Generic.dwzzt
WebrootW32.Infostealer.Zeus
AviraTR/Crypt.XPACK.Gen
MAXmalware (ai score=100)
Antiy-AVLTrojan/Win32.AGeneric
KingsoftWin32.Troj.Undef.(kcloud)
ArcabitTrojan.Crypt.61
ZoneAlarmHEUR:Trojan.Win32.Generic
MicrosoftTrojan:Win32/Dynamer!ac
SentinelOneStatic AI – Malicious PE
Acronissuspicious
VBA32BScope.Trojan.Proxy
ALYacGen:Variant.Crypt.61
MalwarebytesMalware.AI.744254185
RisingTrojan.Kryptik!8.8 (TFE:1:Qs2EWVapvLT)
YandexTrojan.Agent!By7lH4OdrZs
IkarusTrojan.Crypt
FortinetW32/Kryptik.ABC!tr
AVGWin32:Reveton-Y [Trj]
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_100% (D)

How to remove Crypt.61?

Crypt.61 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment