Malware

What is “Win32/GenKryptik.FKXB”?

Malware Removal

The Win32/GenKryptik.FKXB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/GenKryptik.FKXB virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • A process created a hidden window
  • Uses Windows utilities for basic functionality
  • Executed a process and injected code into it, probably while unpacking
  • Installs itself for autorun at Windows startup
  • Anomalous binary characteristics

How to determine Win32/GenKryptik.FKXB?


File Info:

crc32: F1384B00
md5: 5f8b22e659bfc7db9a7043a828da7675
name: 5F8B22E659BFC7DB9A7043A828DA7675.mlw
sha1: 91a30a2b1b936ab508b37a713ae35358b3c24150
sha256: 153862cb79a2312f54a2307460872006138a649cdac6525df1d04c093c8b1454
sha512: edcfbee0f7dbac6050a01703cd96d4bf130568c90a71290eccfb9aae6671274db95f60e1be8df7c51e1e58bc7ee22cc67ac63ffd56f0db8fd7a84d92f83cd3d9
ssdeep: 12288:b0y2ZOB93YJh6kwi4eYHc+12GPUhW1brsZCesX/OkSAIV5TQi/c+FI2PXCkp5:b0y+QFViB7IOcesPIVVZQi/csInk/
type: PE32 executable (DLL) (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/GenKryptik.FKXB also known as:

Elasticmalicious (high confidence)
DrWebTrojan.Inject4.16643
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
K7GWTrojan ( 005829851 )
K7AntiVirusTrojan ( 005829851 )
SymantecTrojan.Gen.MBT
ESET-NOD32a variant of Win32/GenKryptik.FKXB
AvastFileRepMalware
KasperskyTrojan-Banker.Win32.Cridex.aovk
BitDefenderTrojan.GenericKD.47003237
MicroWorld-eScanTrojan.GenericKD.47003237
Ad-AwareTrojan.GenericKD.47003237
ComodoTrojWare.Win32.UMal.knppc@0
BitDefenderThetaGen:NN.ZedlaF.34170.Zq4@ae3nQmo
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
FireEyeTrojan.GenericKD.47003237
EmsisoftTrojan.GenericKD.47003237 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Trojan.Gen
KingsoftWin32.Troj.Banker.(kcloud)
MicrosoftTrojan:Win32/Qakbot.SS!MTB
GDataWin32.Trojan.Agent.06NG5Z
McAfeeRDN/Qakbot
MAXmalware (ai score=80)
PandaTrj/GdSda.A
TrendMicro-HouseCallTROJ_FRS.VSNW15I21
IkarusTrojan-Spy.Agent
FortinetW32/Malicious_Behavior.VEX
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Win32/GenKryptik.FKXB?

Win32/GenKryptik.FKXB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment