Trojan

Trojan.Win32.Crypzip.anq malicious file

Malware Removal

The Trojan.Win32.Crypzip.anq is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Win32.Crypzip.anq virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Reads data out of its own binary image
  • A process created a hidden window
  • Drops a binary and executes it
  • Uses Windows utilities for basic functionality
  • Creates or sets a registry key to a long series of bytes, possibly to store a binary or malware config
  • Installs itself for autorun at Windows startup
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
fHidRpEfBFY.fHidRpEfBFY

How to determine Trojan.Win32.Crypzip.anq?


File Info:

crc32: 4C884746
md5: c4e13231dc6c9ff1e27600d676cf9959
name: C4E13231DC6C9FF1E27600D676CF9959.mlw
sha1: 0a7e9da29456d4f0aa7e1fd2e1a14d0accfd3746
sha256: 5db294d11d872a550c9c5cd851d5cf83ff6ef5f72a94f19b1de07f7abd6354e2
sha512: 5e3c4c3d8ff310db4e17ee90dc0cc46fa16e0f838dcce1e5a12b7888656f3267bfb1a9676374dcd10cd32519c99925d5b4b9e008b5c0361e858e52ac7215e8ba
ssdeep: 24576:ZA1Zz1D+SqeGmN42DgTvPAdtWNCO7vUK0SnwXIiKM+P:e1ZRD+5QGPAdtWNCOrUZ+P
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: pro
ProductVersion: 1.0.0.0
FileVersion: 1.0.0.0
FileDescription:
Translation: 0x0000 0x04b0

Trojan.Win32.Crypzip.anq also known as:

K7AntiVirusTrojan ( 0056e5201 )
LionicTrojan.Win32.Crypzip.4!c
Elasticmalicious (high confidence)
DrWebTrojan.MulDrop18.2122
CynetMalicious (score: 100)
ALYacDropped:Trojan.GenericKD.37255469
CylanceUnsafe
ZillyaTrojan.Alien.Win32.1302
SangforTrojan.Win32.Save.a
AlibabaTrojan:Win32/Crypzip.27b5e016
K7GWTrojan ( 0056e5201 )
CyrenW32/Trojan.CHGY-8915
SymantecML.Attribute.HighConfidence
ESET-NOD32multiple detections
APEXMalicious
AvastNSIS:MalwareX-gen [Trj]
ClamAVWin.Packed.Filerepmalware-9864117-0
KasperskyTrojan.Win32.Crypzip.anq
BitDefenderDropped:Trojan.GenericKD.37255469
MicroWorld-eScanDropped:Trojan.GenericKD.37255469
TencentWin32.Trojan.Crypzip.Taer
Ad-AwareDropped:Trojan.GenericKD.37255469
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34050.5q3@auO5t8eQ
TrendMicroRansom_StopCrypt.R002C0DGO21
McAfee-GW-EditionBehavesLike.Win32.ObfusRansom.tc
FireEyeGeneric.mg.c4e13231dc6c9ff1
EmsisoftTrojan.Crypt (A)
AviraTR/ClipBanker.zkvfs
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.30F1E4B
MicrosoftRansom:Win32/StopCrypt.MYK!MTB
GDataWin32.Trojan.BSE.HLJWVB
AhnLab-V3Trojan/Win.Generic.C4564087
McAfeeArtemis!C4E13231DC6C
MAXmalware (ai score=81)
VBA32BScope.Backdoor.Androm
MalwarebytesMalware.AI.4024116118
TrendMicro-HouseCallRansom_StopCrypt.R002C0DGO21
RisingTrojan.HiddenRun/SFX!1.D57B (CLASSIC)
IkarusTrojan-Spy.MSIL.Agent
FortinetW32/Crypzip.ANQ!tr
AVGNSIS:MalwareX-gen [Trj]
Paloaltogeneric.ml

How to remove Trojan.Win32.Crypzip.anq?

Trojan.Win32.Crypzip.anq removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment