Malware

Troj/Krypt-AAQ information

Malware Removal

The Troj/Krypt-AAQ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Troj/Krypt-AAQ virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • CAPE extracted potentially suspicious content
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid

How to determine Troj/Krypt-AAQ?


File Info:

name: FD699B4ED20DC242C93C.mlw
path: /opt/CAPEv2/storage/binaries/276677627decf1682d9cb3545327eaaec22fe5e36fff15b57f1614b21022a092
crc32: FC20E7FE
md5: fd699b4ed20dc242c93c08fd0e200e56
sha1: 8744ac80d4cba3be5c2a6df20895af9a7c3f204d
sha256: 276677627decf1682d9cb3545327eaaec22fe5e36fff15b57f1614b21022a092
sha512: 3b5e4a05286d12e7c9c8bfe587e80deacdd44c2b9832370eb45765623703335ef5cd216aaea0cd61bb5cbb55584dad0793faab3c1aa85cad644358238e28ab19
ssdeep: 6144:JjFFrmFKx3NUk/8aGkuNYxx7K45fm7gDqBDkfg1Zcst0:JjFF8VzkuCxdK4hOkY1Zcst0
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T10C54BE49B2E39C57C0ABEF353977A173546BE12A0F0C70E3A16A831E159D364E638F61
sha3_384: b1d0c70682fd8e28675c57ef2bbfd013eb64b84bb0f8fddca1eedff89f3b518b9ca9984477de0211eb141b3d30fa243e
ep_bytes: e8a3020000e974feffff558bec8b4508
timestamp: 2023-07-16 03:27:15

Version Info:

0: [No Data]

Troj/Krypt-AAQ also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.Convagent.4!c
MicroWorld-eScanGen:Variant.Lazy.361702
FireEyeGeneric.mg.fd699b4ed20dc242
ALYacGen:Variant.Lazy.361702
Cylanceunsafe
VIPREGen:Variant.Lazy.361702
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 005a8a441 )
BitDefenderGen:Variant.Lazy.361702
K7GWTrojan ( 005a8a441 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaGen:NN.ZexaF.36318.sqW@amtihFp
CyrenW32/ABRisk.MFWE-5984
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.HUBJ
APEXMalicious
KasperskyHEUR:Trojan.Win32.Convagent.gen
AlibabaTrojan:Win32/Kryptik.462f36cb
NANO-AntivirusTrojan.Win32.Stealer.jxhrxe
AvastWin32:PWSX-gen [Trj]
RisingTrojan.Kryptik!1.E838 (CLASSIC)
SophosTroj/Krypt-AAQ
F-SecureTrojan.TR/Crypt.Agent.giflp
TrendMicroTROJ_GEN.R002C0DGG23
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
Trapminemalicious.moderate.ml.score
EmsisoftGen:Variant.Lazy.361702 (B)
IkarusTrojan.Agent
GDataGen:Variant.Lazy.361702
GoogleDetected
AviraTR/Crypt.Agent.giflp
MAXmalware (ai score=82)
Antiy-AVLTrojan/Win32.Kryptik
ArcabitTrojan.Lazy.D584E6
ZoneAlarmHEUR:Trojan.Win32.Convagent.gen
MicrosoftTrojan:Win32/Redline.GNF!MTB
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win.Generic.R591715
Acronissuspicious
McAfeeArtemis!FD699B4ED20D
TACHYONTrojan/W32.Convagent.302080.D
VBA32Trojan.Injurer
MalwarebytesTrojan.Crypt.Generic
PandaTrj/Genetic.gen
TrendMicro-HouseCallTROJ_GEN.R002C0DGG23
TencentMalware.Win32.Gencirc.13e9ff8d
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.HUBJ!tr
AVGWin32:PWSX-gen [Trj]
Cybereasonmalicious.0d4cba
DeepInstinctMALICIOUS

How to remove Troj/Krypt-AAQ?

Troj/Krypt-AAQ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment