Malware

Win32/Kryptik.BNPY removal

Malware Removal

The Win32/Kryptik.BNPY is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.BNPY virus can do?

  • Sample contains Overlay data
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Win32/Kryptik.BNPY?


File Info:

name: C79C836C4E6F0BA54658.mlw
path: /opt/CAPEv2/storage/binaries/4205b42bf44db5eb4dcf1233a26ffe977011d1af51fbdbe102e7b41962511eb4
crc32: 70EA7F99
md5: c79c836c4e6f0ba54658f1ac0483b378
sha1: 09fc8b07c08f8da2444311495d54d16156cc4146
sha256: 4205b42bf44db5eb4dcf1233a26ffe977011d1af51fbdbe102e7b41962511eb4
sha512: 52a7fc0448de80a263989f81ae9718569582e3d3e3af562483f9d10b942acaea937ecffd2b620f5fc95a0d920da19fe471b2edd4a128749ef87ef2b510a388b9
ssdeep: 1536:WIiYhU3GpNXnauAvEcmJXJhbG42zOHmicZSsPH6fv5LM1e3WX3UAElbobV62j:WwYm9AvEcabGh3NZSsPH6ftD3S39bVR
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T146A37C93DAD88776E991A67136F62E28C17C311240A47C54FE386CE9F61FBC5872078B
sha3_384: cf4f84c9fa18a9c85190a110027730e8dccb594d766ec36e02ab71ab665e6f6f523ed960ae6adbe6e449ef2a185f7d3f
ep_bytes: 90908bc4663d00f6724c687f4fbfff59
timestamp: 2010-07-13 12:44:29

Version Info:

0: [No Data]

Win32/Kryptik.BNPY also known as:

BkavW32.AIDetect.malware2
tehtrisGeneric.Malware
MicroWorld-eScanTrojan.VIZ.Gen.1
FireEyeGeneric.mg.c79c836c4e6f0ba5
McAfeeGeneric-FANP!C79C836C4E6F
VIPRETrojan.VIZ.Gen.1
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 004ff4611 )
K7GWTrojan ( 004ff4611 )
Cybereasonmalicious.c4e6f0
SymantecTrojan.Gen.2
Elasticmalicious (high confidence)
ESET-NOD32a variant of Win32/Kryptik.BNPY
APEXMalicious
TrendMicro-HouseCallWORM_KELIHOS.SMJ
KasperskyBackdoor.Win32.Hlux.cqg
BitDefenderTrojan.VIZ.Gen.1
AvastWin32:Kryptik-NCQ [Trj]
Ad-AwareTrojan.VIZ.Gen.1
ComodoTrojWare.Win32.Kryptik.BLUE@53i51j
BaiduWin32.Trojan.Kryptik.c
ZillyaBackdoor.Hlux.Win32.1167
TrendMicroWORM_KELIHOS.SMJ
McAfee-GW-EditionGeneric-FANP!C79C836C4E6F
Trapminemalicious.high.ml.score
EmsisoftTrojan.VIZ.Gen.1 (B)
SentinelOneStatic AI – Malicious PE
GDataTrojan.VIZ.Gen.1
GoogleDetected
AviraTR/Urausy.83916845
MAXmalware (ai score=88)
Antiy-AVLTrojan/Generic.ASBOL.BBA
KingsoftWin32.Hack.Hlux.c.(kcloud)
ZoneAlarmBackdoor.Win32.Hlux.cqg
CynetMalicious (score: 100)
AhnLab-V3Spyware/Win32.Zbot.R86172
VBA32Heur.Trojan.Hlux
ALYacTrojan.VIZ.Gen.1
RisingTrojan.Win32.Urausy.a (CLASSIC)
YandexTrojan.GenAsa!cHx2EBPkBQI
IkarusBackdoor.Win32.Kelihos
FortinetW32/Kryptik.BDPK!tr
AVGWin32:Kryptik-NCQ [Trj]
PandaTrj/Genetic.gen
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Win32/Kryptik.BNPY?

Win32/Kryptik.BNPY removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment