Malware

Win32/GenKryptik.FHJQ malicious file

Malware Removal

The Win32/GenKryptik.FHJQ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/GenKryptik.FHJQ virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Looks up the external IP address
  • A process sent information about the computer to a remote location.
  • Anomalous binary characteristics

Related domains:

api.ipify.org
sudepallon.com
srand04rf.ru

How to determine Win32/GenKryptik.FHJQ?


File Info:

crc32: D97A2596
md5: e15a54339eb2afee64ce62ca6056986f
name: E15A54339EB2AFEE64CE62CA6056986F.mlw
sha1: 8760d7741c018e0b30cd4a843863b6632ab51565
sha256: 4f13fa5ffe4d278b08df1e7ac65e9e09b204bc25af5eb9a935d1e326563491d7
sha512: 82dade1446540acbf9a2502c09788591ecc241fa2bbbe7623da849c3cac802d2dc640c7760d59680671a11933983fdd2f6f457ac7b6a45293c88ab4533942383
ssdeep: 3072:c+dVxycTZ+1ohyeQB7qZDotOet+vWEY+mq2MBcCWBM0NYgJKUFfn+rY+FYs:c+HZ+10yjBXtdt+vW/q2UINHJK5dYs
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/GenKryptik.FHJQ also known as:

CrowdStrikewin/malicious_confidence_60% (W)
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/GenKryptik.FHJQ
APEXMalicious
AvastWin32:CrypterX-gen [Trj]
CynetMalicious (score: 100)
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.e15a54339eb2afee
MicrosoftProgram:Win32/Wacapew.C!ml
McAfeeArtemis!E15A54339EB2
RisingTrojan.Generic@ML.91 (RDML:zuUpU9XSeLoTSGfX6MStRA)
FortinetW32/GenKryptik.FHJQ!tr
AVGWin32:CrypterX-gen [Trj]
Paloaltogeneric.ml

How to remove Win32/GenKryptik.FHJQ?

Win32/GenKryptik.FHJQ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment