Malware

Packed.Win32.Krap.jc removal guide

Malware Removal

The Packed.Win32.Krap.jc is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Packed.Win32.Krap.jc virus can do?

  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Packed.Win32.Krap.jc?


File Info:

name: 7C4996E8F7D5C225976D.mlw
path: /opt/CAPEv2/storage/binaries/2c427b656caefd38edccebcae11c518f68d885a0eb2e6d1a304822743bf57343
crc32: AF06E96A
md5: 7c4996e8f7d5c225976d6051ab5ef18c
sha1: 3f427f1945fb8780247f45ac5da0074e9e7c4f8e
sha256: 2c427b656caefd38edccebcae11c518f68d885a0eb2e6d1a304822743bf57343
sha512: 8cf836ec803d55660c87d36961aebc593486683af327a7ecc2838c414448d436751d0fe4dc264d1f2eee335b33c23d64c4753fd2625fbf8a46c1cca8358b15c0
ssdeep: 98304:sLtU8fk4pCLNCOE1OyLIlsX7KQyVPKAzyVPKAd:sxUJwOno
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1E8A68E1176B8C1B5C1EA83749A75CA0BF27934550B3497EFB29D461E1F33AE10B3A722
sha3_384: cdc3c2f27dacb602b49504641a242515be50a1075eac928183d1cd4ea1518a81050425de662ecdb3d015bcd7ae78b911
ep_bytes: e80060000073ebebebeb73237dabebf3
timestamp: 2010-08-01 10:32:37

Version Info:

0: [No Data]

Packed.Win32.Krap.jc also known as:

BkavW32.OverlayND.PE
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.Agent.EXMP
FireEyeGeneric.mg.7c4996e8f7d5c225
CAT-QuickHealWin32.Sivis.A4
McAfeePacked-SU!7C4996E8F7D5
CylanceUnsafe
SangforVirus.Win32.Save.a
K7AntiVirusTrojan ( 00517a0d1 )
K7GWTrojan ( 00517a0d1 )
Cybereasonmalicious.8f7d5c
CyrenW32/Zbot.GH.gen!Eldorado
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32Win32/Ausiv.A
APEXMalicious
ClamAVWin.Trojan.Agent-6943819-1
KasperskyPacked.Win32.Krap.jc
BitDefenderTrojan.Agent.EXMP
NANO-AntivirusTrojan.Win32.Krap.espnuv
AvastWin32:Agent-BCFZ [Trj]
TencentTrojan.Win32.Kryptik.fwwy
Ad-AwareTrojan.Agent.EXMP
EmsisoftTrojan.Agent.EXMP (B)
ComodoVirus.Win32.VirLock.GA@7lv9go
F-SecureTrojan.TR/Crypt.XPACK.Gen
DrWebTrojan.KillFiles.62112
ZillyaTrojan.Krap.Win32.8947
TrendMicroVirus.Win32.SIVIS.B
McAfee-GW-EditionBehavesLike.Win32.Generic.th
SophosML/PE-A
IkarusPacker.Win32.Krap
GDataWin32.Virus.Ausiv.B
JiangminPacked.Krap.fyig
AviraTR/Crypt.XPACK.Gen
Antiy-AVLTrojan[Packed]/Win32.Krap
ArcabitTrojan.Agent.EXMP
ViRobotTrojan.Win32.Agent.Gen.C
ZoneAlarmPacked.Win32.Krap.jc
MicrosoftTrojan:Win32/Ausiv
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Agent.R236179
VBA32Trojan.KillFiles
ALYacTrojan.Agent.EXMP
MAXmalware (ai score=82)
MalwarebytesSivis.Virus.FileInfector.DDS
TrendMicro-HouseCallVirus.Win32.SIVIS.B
RisingTrojan.Kryptik!8.8 (TFE:dGZlOgXBnJE79D+K8w)
YandexTrojan.GenAsa!8BX67dEhxck
SentinelOneStatic AI – Malicious PE
MaxSecurePacked.Krap.JC
FortinetW32/Ausiv.A
BitDefenderThetaAI:Packer.261445C01D
AVGWin32:Agent-BCFZ [Trj]
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Packed.Win32.Krap.jc?

Packed.Win32.Krap.jc removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment