Virus

About “Virus:Win32/Krepper.30760” infection

Malware Removal

The Virus:Win32/Krepper.30760 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Virus:Win32/Krepper.30760 virus can do?

  • Sample contains Overlay data
  • Yara rule detections observed from a process memory dump/dropped files/CAPE
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Authenticode signature is invalid
  • Deletes executed files from disk

How to determine Virus:Win32/Krepper.30760?


File Info:

name: 8879B10EBAB5F8D41806.mlw
path: /opt/CAPEv2/storage/binaries/10d8bffa4a065755e6014a19474c40b8ac3a68e541cfe383367af1dc64468a57
crc32: 2A637109
md5: 8879b10ebab5f8d4180653ff4859b448
sha1: 75ae59b3ad24fda6c4331ebc6c2863dd6877ed13
sha256: 10d8bffa4a065755e6014a19474c40b8ac3a68e541cfe383367af1dc64468a57
sha512: 355fee15d1f1193d66da096b84d6c270cf9701d1d59a5784e57885765925823bae8779774e128c16f3469f87c77dfde8cbe012231f15e41eb0ee05084bce03ab
ssdeep: 24576:1hUV83LzXYJLKSMech6ispJzc5YYmsRr6ylMwpbdgaocZwBH:gVLKRWTQ6Zs5DhgPF
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T1F525BF13A3D60072F6B23930466FB3756D7E77210A78894D43941A7E5E72EC0AE2936F
sha3_384: 9b5defffbc33d513fa7999c55376e9a654e7d2128ad055d5d3e49cd4e447a93befcc67d42820ce80eee6acfd4ad8e1e3
ep_bytes: 60e8000000005883e83d508db800b0fc
timestamp: 2003-09-28 00:37:23

Version Info:

0: [No Data]

Virus:Win32/Krepper.30760 also known as:

BkavW32.AIDetect.malware2
tehtrisGeneric.Malware
MicroWorld-eScanDropped:Win32.Sality.RA
ClamAVWin.Trojan.Kreepper-1
FireEyeGeneric.mg.8879b10ebab5f8d4
CAT-QuickHealW32.Sality.F
ALYacDropped:Win32.Sality.RA
CylanceUnsafe
VIPREDropped:Win32.Sality.RA
K7AntiVirusVirus ( 000e341a1 )
K7GWVirus ( 000e341a1 )
Cybereasonmalicious.ebab5f
VirITWin32.Sality.F
CyrenW32/Krepper.WYNG-6962
SymantecW32.Sality
Elasticmalicious (high confidence)
ESET-NOD32Win32/Sality.H
ZonerProbably Heur.ExeHeaderL
APEXMalicious
CynetMalicious (score: 100)
KasperskyVirus.Win32.Krepper.30760
BitDefenderDropped:Win32.Sality.RA
NANO-AntivirusVirus.Win32.Krepper.getc
SUPERAntiSpywareVirus.Krepper
AvastWin32:Malware-gen
TencentVirus.Win32.Krepper.a
Ad-AwareDropped:Win32.Sality.RA
EmsisoftDropped:Win32.Sality.RA (B)
ComodoVirus.Win32.Krepper.30760@14400g
DrWebWin32.HLLP.Sector.30760
ZillyaVirus.Krepper.Win32.3
TrendMicroPE_SALITY.L
McAfee-GW-EditionBehavesLike.Win32.PWSZbot.fh
Trapminemalicious.high.ml.score
SophosML/PE-A + W32/Sality-AH
IkarusVirus.Win32.Krepper
GDataDropped:Win32.Sality.RA
JiangminWin32/Krepper.a
AviraW32/Krepper.30761
Antiy-AVLTrojan/Generic.ASVirus.21A
MicrosoftVirus:Win32/Krepper.30760
GoogleDetected
AhnLab-V3Win32/Sality.O
McAfeeW32/Sality.i.gen
MAXmalware (ai score=85)
VBA32Virus.Win32.Krepper.30760
MalwarebytesMalware.Heuristic.1003
TrendMicro-HouseCallPE_SALITY.L
RisingWin32.Krepper.a (CLASSIC)
YandexTrojan.GenAsa!dUDSOmJHLTo
SentinelOneStatic AI – Malicious PE
MaxSecureVirus.W32.Krepper.30760
FortinetW32/Sality.AC
BitDefenderThetaAI:Packer.EC58F9781F
AVGWin32:Malware-gen
PandaW32/Sality.K
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Virus:Win32/Krepper.30760?

Virus:Win32/Krepper.30760 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment