Malware

Win32/GenKryptik.ETVN information

Malware Removal

The Win32/GenKryptik.ETVN is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/GenKryptik.ETVN virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Exhibits possible ransomware file modification behavior
  • Network activity detected but not expressed in API logs

How to determine Win32/GenKryptik.ETVN?


File Info:

crc32: E031C8A5
md5: 0fa98282504a814a172e029d58b88fbd
name: upload_file
sha1: f689dfc4f0e6e9f43bbcd24f0f3a332a97cd3730
sha256: e60996672c7901683e5de88d6e9482e55b5cf9612b7ac1b4eee64e34c44bd6aa
sha512: 3b13f751304e9f5e75fa133b31bdf06091621164d49078ac7286e7f81a75a82173dd301036f43bdbe61130f6226f703be339dc73508ec28edc8906f26cde4a58
ssdeep: 12288:qjXL0ddSpXmzrR5g32NOB16NDXraCxeUxb:qjXMoeR5myOBUDXrle
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

WEB: https://checkfinish.net
InternalName: Experiment.dll
FileVersion: 8.6.3.113
CompanyName: Oxygenwater
Flow: Real
Effect: Bottom
ProductName: Oxygenwater Hundred four
ProductVersion: 8.6.3.113
FileDescription: Hundred four
OriginalFilename: Experiment.dll
Translation: 0x0409 0x04b0

Win32/GenKryptik.ETVN also known as:

BkavW32.AIDetectVM.malware1
ALYacSpyware.Banker.Dridex
VIPRETrojan.Win32.Generic!BT
K7GWTrojan ( 00570cb31 )
K7AntiVirusTrojan ( 00570cb31 )
TrendMicroTrojan.Win32.WACATAC.THJOIBO
CyrenW32/Trojan.DYOA-8084
SymantecTrojan Horse
APEXMalicious
AvastWin32:Trojan-gen
KasperskyHEUR:Trojan-Banker.Win32.Cridex.gen
AlibabaTrojanBanker:Win32/Cridex.b5dd092e
NANO-AntivirusTrojan.Win32.Cridex.hzjtyf
ViRobotTrojan.Win32.S.Agent.429056.CG
TencentWin32.Trojan-banker.Cridex.Jmn
SophosMal/Generic-S
ComodoMalware@#1l6grir2kle58
InvinceaMal/Generic-S
McAfee-GW-EditionRDN/Generic.dx
EmsisoftTrojan.Agent (A)
IkarusTrojan.Win32.Krypt
JiangminDownloader.DownStudio.g
WebrootW32.Trojan.Gen
AviraTR/Kryptik.uboni
Antiy-AVLTrojan[Banker]/Win32.Cridex
MicrosoftTrojan:Win32/Cridex!MSR
ZoneAlarmHEUR:Trojan-Banker.Win32.Cridex.gen
GDataWin32.Trojan.Agent.41PAET
CynetMalicious (score: 85)
AhnLab-V3Trojan/Win32.Agent.C4205381
McAfeeRDN/Generic.dx
VBA32BScope.TrojanBanker.Cridex
MalwarebytesTrojan.Banker
PandaTrj/RnkBend.A
ESET-NOD32a variant of Win32/GenKryptik.ETVN
TrendMicro-HouseCallTrojan.Win32.WACATAC.THJOIBO
MaxSecureTrojan.Malware.74474672.susgen
FortinetW32/Cridex.ETVN!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.8a8

How to remove Win32/GenKryptik.ETVN?

Win32/GenKryptik.ETVN removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment