Malware

What is “Win32/GenKryptik.EBWL”?

Malware Removal

The Win32/GenKryptik.EBWL is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/GenKryptik.EBWL virus can do?

  • Executable code extraction
  • Creates RWX memory
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Farsi
  • The binary likely contains encrypted or compressed data.
  • Collects information to fingerprint the system
  • Anomalous binary characteristics

Related domains:

khaliddib398.xyz

How to determine Win32/GenKryptik.EBWL?


File Info:

crc32: CFD47BC6
md5: 3a2709f9b1279895c9b9d1ed6d8d33c1
name: him.exe
sha1: eedaff9009a33427371c25b2d44964c39b7d9724
sha256: a14c5d8fe882b4986907f42a256177e58a6a1d19b64843e2c1a33f6a6cc79708
sha512: 50aca0a2a918d47600b99562294b754b203610f12e3a301237d71651b6e7ad6784e470eca047161d186153e4a49bee9055d2dd769558953955c8df94f1cecd29
ssdeep: 3072:kqn/LQ5vEP0OjvUqQ61wto4x1vo5+Z4KOwF7ZHWAAfnH://LQ5vAzLUq3Ce4x34+ufH
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/GenKryptik.EBWL also known as:

FireEyeGeneric.mg.3a2709f9b1279895
McAfeeArtemis!3A2709F9B127
CylanceUnsafe
SangforMalware
Cybereasonmalicious.9b1279
BitDefenderThetaGen:NN.ZexaF.34082.ouW@a8SRGokG
SymantecPacked.Generic.525
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Generic.dh
WebrootW32.Malware.gen
Endgamemalicious (high confidence)
MicrosoftTrojan:Win32/Wacatac.B!ml
Acronissuspicious
MalwarebytesTrojan.MalPack.GS
APEXMalicious
ESET-NOD32a variant of Win32/GenKryptik.EBWL
RisingMalware.Heuristic!ET#98% (RDMK:cmRtazp8tH8HZaod9m2UAWJYvQbl)
eGambitUnsafe.AI_Score_99%
MaxSecureTrojan.Malware.300983.susgen
CrowdStrikewin/malicious_confidence_80% (W)
Qihoo-360HEUR/QVM10.1.8BCF.Malware.Gen

How to remove Win32/GenKryptik.EBWL?

Win32/GenKryptik.EBWL removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment