Malware

Win32/GenKryptik.EQKF information

Malware Removal

The Win32/GenKryptik.EQKF is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/GenKryptik.EQKF virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Portuguese (Brazilian)
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
vaggner.uno
sfirza.best
historychina.best
chinabuild.uno

How to determine Win32/GenKryptik.EQKF?


File Info:

crc32: F0E73052
md5: 69b1156f1a491b9703db46a6f3ef6d42
name: client.exe
sha1: cd8005642caa02254c70109fcb02a4e8c3866267
sha256: 517ace7d6f0e21c4ecb19aa080a92b3ce8ecf437ba459a2fd7d2aa78d7863a4d
sha512: 8f5e5724bf483b513883dccfa6839e25997def3772c81f670dadf2a04af378563b11207cb6606046d0af314c285e647d527744c70b22895295611a9fc87c116a
ssdeep: 3072:2M/rad2jwRsGQf5dENUuWr+k8HptpuXYfZqc55NU6QZoJK:2MTaZgkNU9r+k8HpvuXiZVNQoJK
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

FileVersiones: 1.0.0.1
Copyright: Copyright (C) 2020, hotc
Translations: 0x0192 0x03d8

Win32/GenKryptik.EQKF also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.43664450
FireEyeGeneric.mg.69b1156f1a491b97
Qihoo-360Win32/Trojan.Dropper.028
McAfeeRDN/Generic.grp
AegisLabTrojan.Win32.Malicious.4!c
SangforMalware
BitDefenderTrojan.GenericKD.43664450
Cybereasonmalicious.42caa0
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.EQKF
APEXMalicious
KasperskyTrojan.Win32.Zenpak.asil
Ad-AwareTrojan.GenericKD.43664450
EmsisoftTrojan.GenericKD.43664450 (B)
WebrootW32.Trojan.Gen
MAXmalware (ai score=84)
MicrosoftTrojan:Win32/Caynamer.A!ml
ArcabitTrojan.Generic.D10F52
GDataWin32.Packed.Kryptik.H3C039
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.MalPe.R342604
Acronissuspicious
BitDefenderThetaGen:NN.ZexaF.34152.lqW@aC1fbxmG
VBA32Malware-Cryptor.Limpopo
MalwarebytesSpyware.KpotStealer
RisingTrojan.Generic@ML.90 (RDML:BU0C0bdWb0KFk+hBzbdKAg)
IkarusWin32.Outbreak
eGambitUnsafe.AI_Score_67%
FortinetPossibleThreat.PALLAS.H
AVGFileRepMetagen [Malware]
AvastFileRepMetagen [Malware]
CrowdStrikewin/malicious_confidence_90% (W)
MaxSecureTrojan.Malware.300983.susgen

How to remove Win32/GenKryptik.EQKF?

Win32/GenKryptik.EQKF removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment