Malware

Win32/GenKryptik.EQZC removal instruction

Malware Removal

The Win32/GenKryptik.EQZC is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/GenKryptik.EQZC virus can do?

  • Injection (inter-process)
  • Injection with CreateRemoteThread in a remote process
  • Creates RWX memory
  • Possible date expiration check, exits too soon after checking local time
  • The binary likely contains encrypted or compressed data.
  • Sniffs keystrokes
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Win32/GenKryptik.EQZC?


File Info:

crc32: FA821374
md5: 805d442d5c1ca1924980fdd5f6aae232
name: upload_file
sha1: 5263fa0419dcaca8d4b78f637d482946ea7ce9a0
sha256: ba180eef119a53c259eb5bdb6337610def685627e9f3a8ff1c70c5aae503d245
sha512: 3df7a433be54ff472f7e64fd7f207ec4ff6923e99469b40d7a9681c750f280ef846362a7de899c55ca0c61a49ac059d07d041c3c60121780b5ab40644f900353
ssdeep: 24576:m2+CFAQIu0I5dEjej+LyYIrUjoRUCXJuTaZ:R+0RWVejmdEZ
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/GenKryptik.EQZC also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.GenericKD.34404612
FireEyeGeneric.mg.805d442d5c1ca192
McAfeeFareit-FYT!805D442D5C1C
CylanceUnsafe
AegisLabTrojan.Win32.Kryptik.4!c
BitDefenderTrojan.GenericKD.34404612
K7GWTrojan ( 0056d13c1 )
Cybereasonmalicious.419dca
Invinceaheuristic
BitDefenderThetaGen:NN.ZelphiF.34186.@GW@aOIBvShi
SymantecML.Attribute.HighConfidence
APEXMalicious
KasperskyHEUR:Trojan.Win32.Kryptik.gen
RisingTrojan.Injector!1.AFE3 (CLOUD)
Ad-AwareTrojan.GenericKD.34404612
SentinelOneDFI – Suspicious PE
MAXmalware (ai score=84)
MicrosoftVirTool:Win32/CeeInject.JJ!bit
ArcabitTrojan.Generic.D20CF904
ZoneAlarmHEUR:Trojan.Win32.Kryptik.gen
GDataWin32.Trojan.Kryptik.DVRDT0
CynetMalicious (score: 100)
Acronissuspicious
VBA32BScope.Trojan.Crypt
MalwarebytesTrojan.MalPack.DLF
ESET-NOD32a variant of Win32/GenKryptik.EQZC
eGambitUnsafe.AI_Score_99%
FortinetW32/Injector.ENBK!tr
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_60% (D)
Qihoo-360HEUR/QVM05.1.6D8F.Malware.Gen

How to remove Win32/GenKryptik.EQZC?

Win32/GenKryptik.EQZC removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment