Malware

Win32/GenKryptik.DXEX information

Malware Removal

The Win32/GenKryptik.DXEX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/GenKryptik.DXEX virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/GenKryptik.DXEX?


File Info:

crc32: 771CB9BA
md5: b46bbdc572970aa6f0561bf983af59ec
name: kok.exe
sha1: c0dfd338a9b3ce094fbd6b7abad7a969b5c40d05
sha256: 90ab1e4cc3a04866a58b243b5330b7d9f62ed594b66b188fb2899ef286d6ab7e
sha512: 914f14a35bc61342169f14193d01a106bcf31400717e06d79e3e28dfa566388598c367e2a14cde8871dde038d370717823ebafc8316c018f6e0ea8d97e528961
ssdeep: 12288:ij7aXcKRv8MjsmOMBNd/rGNpkF9s4k44yx21P/XAgqdoH:iyX9RUse+kpAS44O21PYgqdoH
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
ProductVersion: 1.04.0001
InternalName: Contratto
FileVersion: 1.04.0001
OriginalFilename: Contratto.exe
ProductName: ReHeso

Win32/GenKryptik.DXEX also known as:

McAfeeFareit-FQH!B46BBDC57297
Invinceaheuristic
BitDefenderThetaGen:Trojan.Heur2.PPBB.3.0.Jm0@bGIY3ehiy
ESET-NOD32a variant of Win32/GenKryptik.DXEX
APEXMalicious
Paloaltogeneric.ml
KasperskyHEUR:Trojan.Win32.Generic
McAfee-GW-EditionBehavesLike.Win32.Fareit.hc
Trapminemalicious.moderate.ml.score
FireEyeGeneric.mg.b46bbdc572970aa6
SophosMal/FareitVB-N
IkarusTrojan.VB.Crypt
Endgamemalicious (high confidence)
MicrosoftTrojan:Win32/Wacatac.B!ml
ZoneAlarmHEUR:Trojan.Win32.Generic
Acronissuspicious
MalwarebytesTrojan.MalPack.VB
SentinelOneDFI – Suspicious PE
Cybereasonmalicious.8a9b3c
Qihoo-360HEUR/QVM03.0.11DB.Malware.Gen

How to remove Win32/GenKryptik.DXEX?

Win32/GenKryptik.DXEX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment