Malware

Heur.Krypt.6 removal

Malware Removal

The Heur.Krypt.6 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Heur.Krypt.6 virus can do?

  • Possible date expiration check, exits too soon after checking local time
  • Unconventionial binary language: Chinese (Simplified)
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Heur.Krypt.6?


File Info:

crc32: 87233941
md5: 1a39b8236e26aec19f0d93814b799fd6
name: 1A39B8236E26AEC19F0D93814B799FD6.mlw
sha1: 64654fe1d3732e31613cb4e8eb1dd90219190970
sha256: 3a79cb89a08be04d610c4814e14d0582fe12843a2baba77c7a0354b3cba24658
sha512: 4b38b47059f4a8d7f48bc337cd829130f5bba00325dc09d43bfc856beb2eb142af82f51b969eafc3bfa13b10480ccab6a983b432d925319aca46729dd74ce160
ssdeep: 3072:XmXlGznkhKwymOS+CpADYq0B88sRjCIlEeE+yTRT:Ue4W5CpADYqr8AxCvT
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright 2010
ProductVersion: 1, 0, 0, 0
FileDescription:
FileVersion: 1, 0, 0, 0
CompanyName:
Translation: 0x0804 0x04b0

Heur.Krypt.6 also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 001930d11 )
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop6.38984
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Koutodoor.MUE.A4
ALYacGen:Heur.Krypt.6
CylanceUnsafe
ZillyaTrojan.Koutodoor.Win32.31624
SangforRansom.Win32.Cerber_9.se
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:Win32/Koutodoor.44f7af18
K7GWTrojan ( 001930d11 )
Cybereasonmalicious.36e26a
BaiduWin32.Rootkit.Koutodoor.a
CyrenW32/Koutodoor.N.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Koutodoor.GU
APEXMalicious
AvastWin32:Koutodoor-E [Drp]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Heur.Krypt.6
NANO-AntivirusTrojan.Win32.MLW.evaszt
ViRobotBackdoor.Win32.A.Koutodoor.83520
MicroWorld-eScanGen:Heur.Krypt.6
TencentMalware.Win32.Gencirc.10c0f016
Ad-AwareGen:Heur.Krypt.6
SophosML/PE-A + Mal/Koutodoor-A
ComodoTrojWare.Win32.Zybr.A@1gtnwn
BitDefenderThetaAI:Packer.7367B71021
VIPRETrojan.Win32.Koutodoor.e (v)
TrendMicroTROJ_KTODOOR.SMF
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.cc
FireEyeGeneric.mg.1a39b8236e26aec1
EmsisoftGen:Heur.Krypt.6 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Generic.aoyv
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Generic.ASMalwS.183D39E
MicrosoftTrojan:Win32/Koutodoor.E
AegisLabTrojan.Win32.Generic.lpXH
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataWin32.Trojan.PSE.15Y6OF0
AhnLab-V3Trojan/Win32.Koutodoor.R1634
Acronissuspicious
McAfeeTrojan-FDZU!1A39B8236E26
MAXmalware (ai score=100)
VBA32BScope.Trojan.Click
MalwarebytesMachineLearning/Anomalous.96%
PandaBck/Koutodoor.E
TrendMicro-HouseCallTROJ_KTODOOR.SMF
RisingTrojan.Fedwj!1.98EA (CLOUD)
YandexTrojan.GenAsa!QFQ/BDhi4qE
IkarusTrojan.Win32.Koutodoor
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Koutodoor.D!tr.bdr
AVGWin32:Koutodoor-E [Drp]
Paloaltogeneric.ml

How to remove Heur.Krypt.6?

Heur.Krypt.6 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment