Malware

What is “Win32/GenKryptik.ECJG”?

Malware Removal

The Win32/GenKryptik.ECJG is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/GenKryptik.ECJG virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/GenKryptik.ECJG?


File Info:

crc32: AADE6480
md5: e751ebdc49dadf1dc6f3ec03d5bd84cb
name: nbchxvjk.exe
sha1: eafa4022a5642300002e7287d28178954fe811e1
sha256: 1b6d56994c5d24382031eb3f17d2abb61273cdc475390a331b9961a20b0e0bf4
sha512: 6ec7d6b9e8f183ee498e5f716d73c172d5f9271a6986f8f3e45d811d5ca437c56816490aa0296666bd9c1ad5ef3dbe0d53cb7437b3acc0a0e3b0ec9ae885bf9f
ssdeep: 1536:fLrsw651Y3ZKGtIzWHqn4ivI63DWlKFHiWI63DUi9Y3ZKGtIzWHqn/w65rLr:fLy51cZKdrdw6iUFCB619cZKdrz5rL
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0409 0x04b0
InternalName: salutati
FileVersion: 1.00
CompanyName: skrub
ProductName: aurig
ProductVersion: 1.00
OriginalFilename: salutati.exe

Win32/GenKryptik.ECJG also known as:

ALYacTrojan.Agent.192512B
SangforMalware
Cybereasonmalicious.2a5642
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.ECJG
APEXMalicious
AvastFileRepMalware
KasperskyBackdoor.Win32.NetWiredRC.kbs
BitDefenderGen:Variant.Ursu.736714
Ad-AwareGen:Variant.Ursu.736714
EmsisoftGen:Variant.Ursu.736714 (B)
McAfee-GW-EditionBehavesLike.Win32.VBObfus.cm
Trapminemalicious.high.ml.score
SophosMal/FareitVB-X
FortinetW32/GenKryptik.ECJG!tr
ArcabitTrojan.Ursu.DB3DCA
ZoneAlarmBackdoor.Win32.NetWiredRC.kbs
AhnLab-V3Trojan/Win32.Injector.R316143
Acronissuspicious
McAfeeFareit-FQO!E751EBDC49DA
MAXmalware (ai score=83)
eGambitUnsafe.AI_Score_99%
GDataGen:Variant.Ursu.736714
AVGFileRepMalware
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_70% (W)

How to remove Win32/GenKryptik.ECJG?

Win32/GenKryptik.ECJG removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment