Malware

Should I remove “Win32/GenKryptik.FFKQ”?

Malware Removal

The Win32/GenKryptik.FFKQ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/GenKryptik.FFKQ virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/GenKryptik.FFKQ?


File Info:

crc32: BA02B8D6
md5: 3e183f61f5c57f61c634751ca1c1cd2b
name: 3E183F61F5C57F61C634751CA1C1CD2B.mlw
sha1: 3d47689cb6c250b6e1af0b6565655b97e38cfdae
sha256: 64fa9e5b21ec321ec3614a51d5170500976a663ed6901f3310ccaee7fea91a36
sha512: baf4ba03010cfdeff6d17b67cda1e58e46b9d2362233eae5281cb2412e155842ae280cf47ea548ae329562550eea02990d800930af0ea7a03e90508f94954ce3
ssdeep: 3072:JEdDG1+B11Y8F41yS0zdvOdmPp6Q1VFMKhOeqbR2j:KJmQZVdTOL0j
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/GenKryptik.FFKQ also known as:

K7AntiVirusTrojan ( 0057c8681 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_70% (W)
AlibabaTrojanBanker:Win32/GenKryptik.396378ea
K7GWTrojan ( 0057c8681 )
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.FFKQ
APEXMalicious
AvastWin32:PWSX-gen [Trj]
KasperskyHEUR:Trojan-Banker.Win32.ClipBanker.gen
BitDefenderTrojan.GenericKD.46306160
MicroWorld-eScanTrojan.GenericKD.46306160
Ad-AwareTrojan.GenericKD.46306160
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34690.gyW@ayjyKEmi
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
FireEyeGeneric.mg.3e183f61f5c57f61
EmsisoftTrojan.GenericKD.46306160 (B)
WebrootTrojan.Dropper.Gen
eGambitUnsafe.AI_Score_99%
MicrosoftTrojan:Win32/Bomitag.D!ml
ArcabitTrojan.Generic.D2C29370
AegisLabTrojan.Win32.ClipBanker.7!c
ZoneAlarmHEUR:Trojan-Banker.Win32.ClipBanker.gen
GDataTrojan.GenericKD.46306160
McAfeeArtemis!3E183F61F5C5
MAXmalware (ai score=86)
TrendMicro-HouseCallTROJ_GEN.R06CH0DEG21
RisingTrojan.GenKryptik!8.AA55 (CLOUD)
IkarusTrojan.Win32.Krypt
FortinetW32/ClipBanker.FFKQ!tr
AVGWin32:PWSX-gen [Trj]

How to remove Win32/GenKryptik.FFKQ?

Win32/GenKryptik.FFKQ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment