Trojan

Trojan.Win32.BetKrypt.xv information

Malware Removal

The Trojan.Win32.BetKrypt.xv is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.BetKrypt.xv virus can do?

  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Uses Windows utilities to create a scheduled task
  • Deletes executed files from disk

How to determine Trojan.Win32.BetKrypt.xv?


File Info:

name: 3D2494F8B3EB22EFCF8B.mlw
path: /opt/CAPEv2/storage/binaries/5f20cb78640f9cbcdf4476a4aed4f75fc499d22a8b32f7a829cdd170c679c5eb
crc32: 1BA82C55
md5: 3d2494f8b3eb22efcf8bddb5bbf3d35e
sha1: f553cc8797f20111d5cebea53ee2ffadb1c8eb6e
sha256: 5f20cb78640f9cbcdf4476a4aed4f75fc499d22a8b32f7a829cdd170c679c5eb
sha512: 422ba90742a6d2278fdd45b8de388b14b94f8ce9268b5924d429a5da0450e8e8d1bb6b2e2633f459d7cb8b2da6ccc12cdf8efd873ddde689cd6bcbf1e451893c
ssdeep: 1536:f7fbN3eEDhDPA/pICdUkbBtW7upvaLU0bI5taxKo0IOlnToIfvwbXOr:T7DhdC6kzWypvaQ0FxyNTBfv4Q
type: PE32 executable (console) Intel 80386, for MS Windows
tlsh: T1B4936D41F3E202F7EAF1053100A6726F973663389764E8DBC74C2D529913AD5A63D3E9
sha3_384: 49c2dbb1885d6d7a3f4169aa04b84c31310b4a6f0f32c8d28d6fc36b3c8c1550d4844c6aa234203c52b91005b1ff6d4c
ep_bytes: 68ac00000068000000006868804100e8
timestamp: 2019-07-30 08:52:45

Version Info:

0: [No Data]

Trojan.Win32.BetKrypt.xv also known as:

BkavW32.AIDetectMalware
LionicTrojan.Win32.BetKrypt.4!c
MicroWorld-eScanTrojan.GenericKD.69028980
CAT-QuickHealTrojan.GenericPMF.S17672155
ALYacTrojan.GenericKD.69028980
Cylanceunsafe
SangforTrojan.Win32.Save.a
AlibabaTrojan:Win32/BetKrypt.72b78c20
Cybereasonmalicious.797f20
CyrenW32/Kryptik.AYO.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
KasperskyTrojan.Win32.BetKrypt.xv
BitDefenderTrojan.GenericKD.69028980
AvastWin32:Malware-gen
TencentMalware.Win32.Gencirc.13edf9e4
TACHYONRansom/W32.Encoder.91648
EmsisoftTrojan.GenericKD.69028980 (B)
F-SecureTrojan.TR/Kryptik.qdbue
VIPRETrojan.GenericKD.69028980
TrendMicroTROJ_GEN.R03BC0WI323
McAfee-GW-EditionBehavesLike.Win32.RealProtect.mh
FireEyeGeneric.mg.3d2494f8b3eb22ef
SophosGeneric ML PUA (PUA)
IkarusTrojan.Win32.Occamy
JiangminTrojan.BAT.aww
AviraTR/Kryptik.qdbue
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Generic.D41D4C74
ZoneAlarmTrojan.Win32.BetKrypt.xv
GDataTrojan.GenericKD.69028980
GoogleDetected
AhnLab-V3Trojan/Win.Generic.C5478991
MAXmalware (ai score=84)
MalwarebytesMalware.Heuristic.1008
TrendMicro-HouseCallTROJ_GEN.R03BC0WI323
RisingTrojan.Generic@AI.99 (RDML:Tr3YM2RfR+7BdpaEA+5aFQ)
SentinelOneStatic AI – Suspicious PE
MaxSecureTrojan.Malware.1728101.susgen
FortinetW32/Nitol.AB!tr
AVGWin32:Malware-gen
DeepInstinctMALICIOUS

How to remove Trojan.Win32.BetKrypt.xv?

Trojan.Win32.BetKrypt.xv removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment