Malware

Win32/GenKryptik.GRPW removal guide

Malware Removal

The Win32/GenKryptik.GRPW is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/GenKryptik.GRPW virus can do?

  • Sample contains Overlay data
  • Authenticode signature is invalid

How to determine Win32/GenKryptik.GRPW?


File Info:

name: 085169DAD9E5AB543314.mlw
path: /opt/CAPEv2/storage/binaries/6f78a5bd3bfdc2861cfe50afe8846b520c4de1cfc1d75793d20f03a40eb3a7d7
crc32: AC684D03
md5: 085169dad9e5ab543314fadfa9e0ae5a
sha1: 47034b6e1f749e0ccb314a44bc1e5de4bba416ff
sha256: 6f78a5bd3bfdc2861cfe50afe8846b520c4de1cfc1d75793d20f03a40eb3a7d7
sha512: 88d15bba9d4001d61f9d0ed2d3e7c32174acce65d651d0cb18ab7ec30f9fdaacdb352175c4730f57e69f35af3a821f78c1c977a131f60d995e44ce26680e8a62
ssdeep: 3072:Jt7VMfMIbIaw3J9gFVb2ZcVmHqu3Kgc+BC3K5eqU+BC3K5eqYroG3wGxoi7:Jt2fMmMK3pOKgMK70K79C
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T19AE39E41B3C0DD67E468263184B7476206B8BD25E6A125AB27883F2FDD712A05A37F1F
sha3_384: 502b8e7b7118a8a077702f65c37d472fd858208cb6b96588daa29b471802e04bdb1c479ff6559d33f1c6b4583e14135f
ep_bytes: 00000000000000000000000000000000
timestamp: 2013-04-22 19:57:44

Version Info:

0: [No Data]

Win32/GenKryptik.GRPW also known as:

BkavW32.AIDetectMalware
DrWebTrojan.Mods.146
MicroWorld-eScanTrojan.GenericKDZ.105101
ClamAVWin.Malware.Gepys-9770177-0
CAT-QuickHealTrojanDropper.Gepys.A
SkyhighBehavesLike.Win32.Generic.ch
ALYacTrojan.GenericKDZ.105101
MalwarebytesGeneric.Malware.AI.DDS
VIPRETrojan.GenericKDZ.105101
SangforTrojan.Win32.Save.a
K7AntiVirusRiskware ( 00584baa1 )
K7GWRiskware ( 00584baa1 )
Cybereasonmalicious.e1f749
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/GenKryptik.GRPW
APEXMalicious
CynetMalicious (score: 100)
BitDefenderTrojan.GenericKDZ.105101
AvastWin32:Gepys-B [Trj]
TencentTrojan.Win32.Kryptik.hck
EmsisoftTrojan.GenericKDZ.105101 (B)
F-SecureTrojan.TR/Crypt.XPACK.Gen7
BaiduWin32.Trojan.Kryptik.eg
ZillyaTrojan.GenKryptik.Win32.389627
FireEyeGeneric.mg.085169dad9e5ab54
SophosML/PE-A
SentinelOneStatic AI – Malicious PE
JiangminTrojan/Agentb.wq
GoogleDetected
AviraTR/Crypt.XPACK.Gen7
MAXmalware (ai score=89)
Antiy-AVLTrojan/Script.Phonzy
Kingsoftmalware.kb.a.1000
ArcabitTrojan.Generic.D19A8D
GDataWin32.Trojan.PSE.143AKNF
VaristW32/Gepys.BI.gen!Eldorado
AhnLab-V3Trojan/Win.Gepys.R574386
VBA32Trojan.Redirect
TACHYONTrojan/W32.Agent.155648.CHQ
Cylanceunsafe
PandaTrj/CI.A
RisingTrojan.Generic@AI.95 (RDMK:PNDMJ/13cSe4oCTsDlXPGg)
IkarusTrojan.Win32.Agent
MaxSecureTrojan.Malware.204925640.susgen
FortinetW32/Gepys.BI!tr
AVGWin32:Gepys-B [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Win32/GenKryptik.GRPW?

Win32/GenKryptik.GRPW removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment