Malware

What is “Win32/GenKryptik.EEZR”?

Malware Removal

The Win32/GenKryptik.EEZR is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/GenKryptik.EEZR virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Executed a process and injected code into it, probably while unpacking
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/GenKryptik.EEZR?


File Info:

crc32: BEC1316D
md5: 93a265adff586ed8cb9395a77b41d354
name: orderlist20202402.exe
sha1: d613cdc3e0486d5e66ee94d7818f07720da477a8
sha256: 3b737ee4380030512149607b3632f5d7af69d33b82b2a00d3d3c55259eb5abd8
sha512: 5912c3326bbe7b323389040f0ae61411fbcf1b8efd443cecf162962455f0c333c43e83d07ad185e9b47d600e622f20f5158a8a4c7ca2a5f5f0ec55875a6605d8
ssdeep: 24576:5Fwz5IIIFee7QYUL4OowicY5Xsmhi9w0NHPiNrr:5VT5QY1OSN5vI3daNrr
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/GenKryptik.EEZR also known as:

MicroWorld-eScanTrojan.GenericKD.33367639
McAfeeFareit-FRB!93A265ADFF58
CylanceUnsafe
SangforMalware
K7AntiVirusRiskware ( 0040eff71 )
BitDefenderTrojan.GenericKD.33367639
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.3e0486
TrendMicroTROJ_GEN.R002C0TBO20
BitDefenderThetaGen:NN.ZelphiF.34090.8GW@aKFahbfi
F-ProtW32/Injector.IXX
ESET-NOD32a variant of Win32/GenKryptik.EEZR
TrendMicro-HouseCallTROJ_GEN.R002C0TBO20
Paloaltogeneric.ml
KasperskyHEUR:Trojan.Win32.Kryptik.gen
AlibabaTrojan:Win32/Lokibot.7f7c993f
AvastWin32:Malware-gen
TencentWin32.Trojan.Kryptik.Htlq
Ad-AwareTrojan.GenericKD.33367639
EmsisoftTrojan.GenericKD.33367639 (B)
Invinceaheuristic
McAfee-GW-EditionBehavesLike.Win32.Fareit.dc
SentinelOneDFI – Suspicious PE
Trapminemalicious.high.ml.score
FireEyeGeneric.mg.93a265adff586ed8
SophosMal/Generic-S
APEXMalicious
CyrenW32/Injector.YOIG-3601
FortinetW32/Agent.AJFK!tr
Antiy-AVLTrojan/Win32.Lokibot
Endgamemalicious (high confidence)
ArcabitTrojan.Generic.D1FD2657
ZoneAlarmHEUR:Trojan.Win32.Kryptik.gen
MicrosoftTrojan:Win32/Lokibot.ART!MTB
AhnLab-V3Win-Trojan/Delphiless.Exp
Acronissuspicious
ALYacSpyware.LokiBot
MAXmalware (ai score=100)
VBA32TScope.Trojan.Delf
RisingTrojan.Injector!1.AFE3 (CLOUD)
IkarusTrojan.Inject
eGambitUnsafe.AI_Score_99%
GDataTrojan.GenericKD.33367639
AVGWin32:Malware-gen
PandaTrj/CI.A
CrowdStrikewin/malicious_confidence_90% (W)
Qihoo-360Generic/HEUR/QVM05.1.751B.Malware.Gen

How to remove Win32/GenKryptik.EEZR?

Win32/GenKryptik.EEZR removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment