Malware

Win32/GenKryptik.EQIE removal

Malware Removal

The Win32/GenKryptik.EQIE is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/GenKryptik.EQIE virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Attempts to connect to a dead IP:Port (5 unique times)
  • At least one IP Address, Domain, or File Name was found in a crypto call
  • Attempts to create or modify system certificates
  • Anomalous binary characteristics

Related domains:

support.oracle.com
support.apple.com
www.intel.com
soldkorean.top
help.twitter.com

How to determine Win32/GenKryptik.EQIE?


File Info:

crc32: 54B2218A
md5: 9dd0668f8ade53645a671b7a998e75f1
name: upload_file
sha1: c00165f7a7859604e887daa6fd7997921f833f6c
sha256: c90625e909ccca0661e36811a439c82daac72658c300102bdb4b6741b5c4a7a9
sha512: 23f3a566d2d55c9251f122e9b9ea0cbc70782ba8f7a9f24c5d1ad066f2482a1e497105810805ba741a7d192c3caf660a30ee00abb33daa189ef513c5c2ea3403
ssdeep: 3072:a+Z+vi6KjUiGA8y7XQDpxo4H+yW50V8/rk2gVUVd:aTBaYKgDc4HRW5/zk0
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/GenKryptik.EQIE also known as:

BkavW32.AIDetectVM.malware2
Elasticmalicious (high confidence)
FireEyeGeneric.mg.9dd0668f8ade5364
McAfeeGenericRXLR-KU!9DD0668F8ADE
AegisLabTrojan.Win32.Generic.4!c
K7AntiVirusTrojan ( 0056c8861 )
BitDefenderTrojan.GenericKD.34355315
K7GWTrojan ( 0056c8861 )
CrowdStrikewin/malicious_confidence_60% (D)
SymantecML.Attribute.HighConfidence
AvastWin32:Trojan-gen
CynetMalicious (score: 85)
AlibabaTrojan:Win32/IcedId.03fff8a0
MicroWorld-eScanTrojan.GenericKD.34355315
RisingTrojan.GenKryptik!8.AA55 (CLOUD)
Ad-AwareTrojan.GenericKD.34355315
ComodoTrojWare.Win32.UMal.zkfuv@0
F-SecureTrojan.TR/AD.PhotoDlder.N
DrWebTrojan.IcedID.30
VIPRETrojan.Win32.Generic!BT
TrendMicroTROJ_GEN.R03FC0DHG20
SophosMal/Generic-S
IkarusTrojan.Win32.Krypt
AviraTR/AD.PhotoDlder.N
FortinetW32/GenKryptik.EOHV!tr
MicrosoftTrojan:Win32/IcedId.DBL!MTB
ALYacTrojan.GenericKD.34355315
MAXmalware (ai score=81)
PandaTrj/GdSda.A
ESET-NOD32a variant of Win32/GenKryptik.EQIE
TrendMicro-HouseCallTROJ_GEN.R03FC0DHG20
TencentWin32.Trojan.Generic.Hyjo
SentinelOneDFI – Suspicious PE
GDataTrojan.GenericKD.34355315
AVGWin32:Trojan-gen
Paloaltogeneric.ml
Qihoo-360Generic/Trojan.78f

How to remove Win32/GenKryptik.EQIE?

Win32/GenKryptik.EQIE removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment