Malware

What is “Win32/GenKryptik_AGen.APB”?

Malware Removal

The Win32/GenKryptik_AGen.APB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/GenKryptik_AGen.APB virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Sample contains Overlay data
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Win32/GenKryptik_AGen.APB?


File Info:

name: 0477D9217C19D19E04D5.mlw
path: /opt/CAPEv2/storage/binaries/c53182ba4d2f51b4908d1c52a869b9435f4abe9f67c16777e839e36f2e40cc4a
crc32: 086B6DD3
md5: 0477d9217c19d19e04d5cb363ca1cca7
sha1: 4e01f95ad0cdd8defc5def4ca27fe610d255f979
sha256: c53182ba4d2f51b4908d1c52a869b9435f4abe9f67c16777e839e36f2e40cc4a
sha512: fe2a03e6058bbd913666d7485c06b2e9d8b415a70ca670ec1c4c98802fdc426683adff807c90f15d05d9c6c281b05d7414c3231e9b5f9948015192791b95214f
ssdeep: 3072:OXk7eCoHRHV3+xntZZ98t5Mflvnqnvium:OXEo/uxn78bMflPqnviu
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T120048F628970BB13E951093517E06BFB801D3C2F4BE5060A7CAEDA5F3763D9A349F942
sha3_384: 2ac722ab210ec07c99b369fee4a54ab57aa78685d1b34a4a2f3ec179f78aa67bf5831267e91893096dff89f591e940af
ep_bytes: 68c0914200e8f0ffffffcd0000000000
timestamp: 2019-04-26 10:28:09

Version Info:

0: [No Data]

Win32/GenKryptik_AGen.APB also known as:

BkavW32.AIDetectMalware
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Variant.Midie.74955
FireEyeGeneric.mg.0477d9217c19d19e
SkyhighBehavesLike.Win32.Generic.ct
McAfeeGenericRXHC-SS!0477D9217C19
MalwarebytesGeneric.Malware.AI.DDS
K7AntiVirusP2PWorm ( 0059beb31 )
K7GWP2PWorm ( 0059beb31 )
Cybereasonmalicious.ad0cdd
BitDefenderThetaAI:Packer.2A5A26C41F
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/GenKryptik_AGen.APB
APEXMalicious
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.VB.gen
BitDefenderGen:Variant.Midie.74955
NANO-AntivirusTrojan.Win32.Banker1.fnwqkb
AvastWin32:VB-AJKU [Trj]
TencentTrojan.Win32.VB.ko
SophosMal/VB-AQT
F-SecureTrojan.TR/Crypt.ZPACK.Gen
DrWebTrojan.MulDrop17.61497
VIPREGen:Variant.Midie.74955
EmsisoftGen:Variant.Midie.74955 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.VB.aqyg
VaristW32/VB_Troj.J.gen!Eldorado
AviraTR/Crypt.ZPACK.Gen
MAXmalware (ai score=86)
Antiy-AVLGrayWare/Win32.VP2.a
Kingsoftmalware.kb.a.999
ArcabitTrojan.Midie.D124CB
ZoneAlarmHEUR:Trojan.Win32.VB.gen
GDataWin32.Trojan.VBClone.B
GoogleDetected
AhnLab-V3Trojan/Win.Agent.R618781
VBA32SScope.Trojan.VB
ALYacGen:Variant.Midie.74955
TACHYONTrojan/W32.VB-Agent.188464.D
Cylanceunsafe
RisingTrojan.VBClone!1.E032 (CLASSIC)
IkarusTrojan.VB.Crypt
FortinetW32/VBClone.D!tr
AVGWin32:VB-AJKU [Trj]
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Win32/GenKryptik_AGen.APB?

Win32/GenKryptik_AGen.APB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment