Trojan

Trojan.Win32.Crypt.aaah (file analysis)

Malware Removal

The Trojan.Win32.Crypt.aaah is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Crypt.aaah virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Trojan.Win32.Crypt.aaah?


File Info:

crc32: 87EF0F79
md5: 6d23eda2292f437332d82eb802384c86
name: 6D23EDA2292F437332D82EB802384C86.mlw
sha1: 2e129efb8d03b1658dc812e4e98041ead40f469f
sha256: 02f424fed01bcaf02ab7adff95340fcbf94e3b02d1f536be30f3ec742d82fe6c
sha512: 2ddd8b204e417ecda20d525b29b77054628bee4f5f2c34b549457772d41a08712b4431b38f5fff2fc011192ba2c824f0d22ca3dafbbc9994462896fed4f3d0b8
ssdeep: 3072:nL2GajvZDp8WDBxvSKSsNJs2g7ZwZVRDHP78FUwd9kSzm7uwKYeZ:oWC6zAysgV93Jwj6
type: PE32 executable (console) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Win32.Crypt.aaah also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 00532ebf1 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Packed2.41104
CynetMalicious (score: 100)
CAT-QuickHealTrojan.CryptPMF.S19257522
ALYacGen:Variant.Razy.763230
CylanceUnsafe
CrowdStrikewin/malicious_confidence_80% (D)
K7GWTrojan ( 00532ebf1 )
Cybereasonmalicious.2292f4
CyrenW32/S-7e95f261!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GHAC
APEXMalicious
AvastWin32:TrojanX-gen [Trj]
KasperskyTrojan.Win32.Crypt.aaah
BitDefenderGen:Variant.Razy.763230
NANO-AntivirusTrojan.Win32.Kryptik.fctcsn
MicroWorld-eScanGen:Variant.Razy.763230
TencentWin32.Trojan.Crypt.Wpjn
Ad-AwareGen:Variant.Razy.763230
SophosMal/Generic-R + Troj/Agent-AZAX
ComodoTrojWare.Win32.Kryptik.GHO@7oazq1
BitDefenderThetaGen:NN.ZexaF.34266.kqW@aCVvXah
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
FireEyeGeneric.mg.6d23eda2292f4373
EmsisoftGen:Variant.Razy.763230 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Crypt.arc
AviraHEUR/AGEN.1128002
Antiy-AVLTrojan/Generic.ASMalwS.2635F1E
MicrosoftTrojan:Win32/Wacatac.B!ml
ArcabitTrojan.Razy.DBA55E
GDataGen:Variant.Razy.763230
AhnLab-V3Malware/Win32.Generic.C2572297
Acronissuspicious
McAfeeGenericRXFQ-RZ!6D23EDA2292F
MAXmalware (ai score=97)
VBA32Trojan.Packed
MalwarebytesMalware.AI.3590192535
PandaTrj/GdSda.A
RisingTrojan.Kryptik!1.B262 (CLASSIC)
YandexTrojan.GenAsa!ms4Qj0e6/GQ
IkarusTrojan.Graftor
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GGBV!tr
AVGWin32:TrojanX-gen [Trj]
Paloaltogeneric.ml

How to remove Trojan.Win32.Crypt.aaah?

Trojan.Win32.Crypt.aaah removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment