Trojan

How to remove “Trojan.Crypt.3”?

Malware Removal

The Trojan.Crypt.3 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Crypt.3 virus can do?

  • SetUnhandledExceptionFilter detected (possible anti-debug)
  • Unconventionial language used in binary resources: Mongolian
  • Authenticode signature is invalid

How to determine Trojan.Crypt.3?


File Info:

name: 8EAF2020AE86C63B144C.mlw
path: /opt/CAPEv2/storage/binaries/fd9be9c43fba56e32b0451ba10953c12d75c9427b28a34b3c5d05e77607b5a0d
crc32: 2084F0DD
md5: 8eaf2020ae86c63b144cd7404d73775a
sha1: 0270fd02906482bdb440ab7c375942974a940bba
sha256: fd9be9c43fba56e32b0451ba10953c12d75c9427b28a34b3c5d05e77607b5a0d
sha512: 3fcbcd3b642ab1bc17873058ad9a020887de898252f7f4772c545daeae713806ee0274cec47fa5e6c8853f84acc68f33ac97677b64435a135e62850d549e096f
ssdeep: 6144:4Uqtv6+/F4acR/4aDBCnWOyKd/WYjPHO:4Uqtv6+dcRxCcufj
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T157748D50B7B0C03DF1B752B8B97593B8653E7DA1AB2491CB22923ADE5A306D0DCB5307
sha3_384: 3e35eee58a8cd597070904a0f7aacf60d01ad84d924c978f947889c2fd21cffac8f340c2dd17b9f0758f380dc1b3dbed
ep_bytes: 8bff558bece806030000e8110000005d
timestamp: 2021-01-25 20:26:01

Version Info:

Translations: 0x0022 0x023c

Trojan.Crypt.3 also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Trojan.Crypt.3
FireEyeGeneric.mg.8eaf2020ae86c63b
McAfeeRDN/Generic.rp
CylanceUnsafe
SangforTrojan.Win32.Save.a
AlibabaTrojan:Win32/Zenpak.4e0e72e0
Cybereasonmalicious.0ae86c
CyrenW32/Kryptik.FSC.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Trojan.Win32.Zenpak.vho
BitDefenderGen:Variant.Trojan.Crypt.3
AvastWin32:Malware-gen
TencentWin32.Trojan.Zenpak.Eerv
Ad-AwareGen:Variant.Trojan.Crypt.3
SophosMal/Generic-S
TrendMicroTROJ_GEN.R03BC0WKQ21
McAfee-GW-EditionBehavesLike.Win32.Generic.fm
EmsisoftGen:Variant.Trojan.Crypt.3 (B)
SentinelOneStatic AI – Malicious PE
GDataGen:Variant.Trojan.Crypt.3
AviraHEUR/AGEN.1126869
MicrosoftTrojan:Win32/Sabsik.FL.B!ml
CynetMalicious (score: 100)
Acronissuspicious
BitDefenderThetaAI:Packer.676B83CB21
ALYacGen:Variant.Trojan.Crypt.3
MAXmalware (ai score=80)
VBA32Trojan.Zenpak
MalwarebytesTrojan.MalPack.GS
TrendMicro-HouseCallTROJ_GEN.R03BC0WKQ21
RisingTrojan.Generic@ML.96 (RDMK:UH+Pgxd/N63IEC+cp2SvHw)
IkarusTrojan.Agent
eGambitUnsafe.AI_Score_89%
FortinetW32/PossibleThreat
AVGWin32:Malware-gen
PandaTrj/GdSda.A
CrowdStrikewin/malicious_confidence_100% (W)
MaxSecureTrojan.Malware.300983.susgen

How to remove Trojan.Crypt.3?

Trojan.Crypt.3 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment