Malware

Win32/Kryptik.BPP (file analysis)

Malware Removal

The Win32/Kryptik.BPP is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.BPP virus can do?

  • Behavioural detection: Executable code extraction – unpacking
  • Uses Windows utilities for basic functionality
  • Reads data out of its own binary image
  • The binary contains an unknown PE section name indicative of packing
  • Authenticode signature is invalid
  • Deletes executed files from disk

How to determine Win32/Kryptik.BPP?


File Info:

name: AC30353FCD556BF67D6C.mlw
path: /opt/CAPEv2/storage/binaries/4170f2f79d853a82c62625a5776b0a8dec9d13e888f86e77cb92e036dcc1a38c
crc32: 4D864173
md5: ac30353fcd556bf67d6ccc8d81b6bc42
sha1: 8abdfc1402f2b72ace967754138508a5b7ae236a
sha256: 4170f2f79d853a82c62625a5776b0a8dec9d13e888f86e77cb92e036dcc1a38c
sha512: 3e8427b3815b76ddf7844234e8835971d82bb397639bf771f1a3e4cff1219e8bc0d1fcc1e228ad3a31cb51f1636288ec295036e52ca8434f5ea2d076505003a7
ssdeep: 768:P+KGZdJueOxr1PuarJHlVBQavxWOf+u4Dt0XtCVJGCIzIsaJHRQCAxtXfq:PDGEr1PDVBQiWe+b0X0nEIs0RQtXy
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11DB3E046D8A4DF30C88C1BF64F6B4B4926E413AA57DA270E716CD094E7863AF79A42D0
sha3_384: 55b81f6c46d50d74c0728e87f050fff96b1ef02887db6c6a2b6da65ba3afd59103646d1f30241bd5873d0b523276a497
ep_bytes: eb3b0024220000000000180122170000
timestamp: 2007-06-01 12:06:31

Version Info:

0: [No Data]

Win32/Kryptik.BPP also known as:

BkavW32.AIDetectMalware
LionicHacktool.Win32.Krap.x!c
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.Heur.Renos.guW@beK51Mb
FireEyeGeneric.mg.ac30353fcd556bf6
CAT-QuickHealTrojan.Renos.S76297
SkyhighDownloader-BWS.k
ALYacGen:Trojan.Heur.Renos.guW@beK51Mb
MalwarebytesCrypt.Trojan.Malicious.DDS
VIPREGen:Trojan.Heur.Renos.guW@beK51Mb
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( f10007041 )
BitDefenderGen:Trojan.Heur.Renos.guW@beK51Mb
K7GWTrojan ( f10007041 )
CrowdStrikewin/malicious_confidence_100% (W)
BitDefenderThetaAI:Packer.DFAB011021
SymantecML.Attribute.HighConfidence
tehtrisGeneric.Malware
ESET-NOD32a variant of Win32/Kryptik.BPP
APEXMalicious
ClamAVWin.Downloader.104245-1
KasperskyPacked.Win32.Krap.ag
AlibabaMalware:Win32/km_2ca93.None
NANO-AntivirusVirus.Win32.Gen-Crypt.ccnc
RisingDownloader.Renos!8.1D0 (TFE:2:IMNxWXHm8lN)
EmsisoftGen:Trojan.Heur.Renos.guW@beK51Mb (B)
F-SecureTrojan-Downloader:W32/Renos.gen!X
DrWebTrojan.DownLoad1.5059
ZillyaDownloader.FraudLoad.Win32.11941
TrendMicroTROJ_FRAUD.SMCX
Trapminemalicious.high.ml.score
SophosMal/Krap-H
IkarusPacker.Win32.Krap
JiangminTrojanDownloader.FraudLoad.kdo
WebrootW32.Rogue.Fraudload.Gen
GoogleDetected
AviraTR/Crypt.EPACK.Gen2
VaristW32/FakeAlert.EK.gen!Eldorado
Antiy-AVLTrojan[Packed]/Win32.Krap
KingsoftWin32.HeurC.KVMH008.a
MicrosoftTrojanDownloader:Win32/Renos.KO
XcitiumTrojWare.Win32.Renos.CJJ@4p151q
ArcabitTrojan.Heur.Renos.EEEA90
ZoneAlarmPacked.Win32.Krap.ag
GDataGen:Trojan.Heur.Renos.guW@beK51Mb
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Renos.R2040
McAfeeDownloader-BWS.k
MAXmalware (ai score=100)
DeepInstinctMALICIOUS
VBA32BScope.TrojanPSW.Coins
Cylanceunsafe
PandaTrj/Krap.AH
TrendMicro-HouseCallTROJ_FRAUD.SMCX
TencentWin32.Packed.Krap.Vmhl
YandexTrojan.GenAsa!/esqWhve98Y
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.873178.susgen
FortinetW32/Kryptik.AG!tr
AVGWin32:FakeAV-AER [Trj]
Cybereasonmalicious.402f2b
AvastWin32:FakeAV-AER [Trj]

How to remove Win32/Kryptik.BPP?

Win32/Kryptik.BPP removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment