Malware

Crypt.74 malicious file

Malware Removal

The Crypt.74 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Crypt.74 virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

How to determine Crypt.74?


File Info:

crc32: 60587234
md5: 6dbef98366a17a56b2a902f6c64bfff9
name: 101189.exe
sha1: 7e943e9e6a298d35b31e43ebca0655c5ee72b3b3
sha256: f3651730194367be2fe91df042fba34b1a0c92c5a99229805a2fd5c3712357ac
sha512: b21d89687ee237346617ebc147032ed37ed6ab7b1f5cb7461157d37fc928cdbfad108e5825d721640d87af241a4af57b24c082392b2c59e96f9cf7ee271c47a3
ssdeep: 6144:c5jlGTL0ZYzLvE5iaJqY2kocdvL5ugvZAT4/aqMIObn579nwxGkeVi:i44Zivm3J12kocTvZzkDN9wxYVi
type: PE32 executable (GUI) Intel 80386, for MS Windows, PECompact2 compressed

Version Info:

LegalCopyright: Copyright (C) 2019
FileVersion: 19, 12, 25, 1335
ProductVersion: 19, 12, 25, 1335
Translation: 0x0804 0x04b0

Crypt.74 also known as:

BkavW32.AIDetectVM.malware2
MicroWorld-eScanGen:Variant.Crypt.74
FireEyeGeneric.mg.6dbef98366a17a56
Qihoo-360Generic/HEUR/QVM17.0.64C5.Malware.Gen
McAfeeGenericRXAA-AA!6DBEF98366A1
ALYacGen:Variant.Crypt.74
CylanceUnsafe
VIPRETrojan-Spy.Win32.Zbot.gen (v)
AegisLabTrojan.Win32.Graftor.4!c
SangforMalware
K7AntiVirusTrojan ( 005242611 )
BitDefenderGen:Variant.Crypt.74
K7GWTrojan ( 005242611 )
CrowdStrikewin/malicious_confidence_90% (W)
TrendMicroTROJ_GEN.R002C0PF420
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
GDataGen:Variant.Crypt.74
KasperskyHEUR:Trojan-Downloader.Win32.Upatre.vho
AlibabaTrojanDownloader:Win32/Upatre.e4de85ec
ViRobotTrojan.Win32.Z.Graftor.280577
TencentWin32.Trojan-downloader.Upatre.Wsuo
Endgamemalicious (high confidence)
SophosMal/Behav-010
ComodoMalware@#otw1ixe0dbnh
F-SecureHeuristic.HEUR/AGEN.1103265
ZillyaDownloader.Upatre.Win32.68623
Invinceaheuristic
EmsisoftGen:Variant.Crypt.74 (B)
SentinelOneDFI – Suspicious PE
CyrenW32/Trojan.FYHC-3088
JiangminTrojanDownloader.Upatre.alov
AviraHEUR/AGEN.1103265
MAXmalware (ai score=84)
ArcabitTrojan.Crypt.74
ZoneAlarmHEUR:Trojan-Downloader.Win32.Upatre.vho
MicrosoftTrojan:Win32/Ymacco.AAF3
CynetMalicious (score: 90)
AhnLab-V3Trojan/Win32.Agent.C3143770
VBA32BScope.Trojan.Tiggre
Ad-AwareGen:Variant.Crypt.74
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/Agent.ZJL
TrendMicro-HouseCallTROJ_GEN.R002C0PF420
RisingDownloader.Upatre!8.B5 (CLOUD)
YandexTrojan.Agent!qJH1VZ/Hfng
IkarusBackdoor.Win32.Zegost
FortinetW32/Upatre.VHO!tr.dldr
BitDefenderThetaGen:NN.ZexaF.34132.rm1faWvH9Wmj
AVGWin32:TrojanX-gen [Trj]
Cybereasonmalicious.366a17
Paloaltogeneric.ml
MaxSecureTrojan.Malware.300983.susgen

How to remove Crypt.74?

Crypt.74 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment