Malware

Win32/Kryptik.EPVX malicious file

Malware Removal

The Win32/Kryptik.EPVX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.EPVX virus can do?

  • Executable code extraction
  • Compression (or decompression)
  • Creates RWX memory
  • Expresses interest in specific running processes
  • Unconventionial language used in binary resources: Chinese (Traditional)
  • Network activity detected but not expressed in API logs
  • Attempts to create a known Carberp/Rovnix mutex.

How to determine Win32/Kryptik.EPVX?


File Info:

crc32: F89F55B2
md5: 85a9f431811cdf1c3ecd69c950a943f9
name: 85A9F431811CDF1C3ECD69C950A943F9.mlw
sha1: ac56dbfdf4a3e9149a839f8ed429059308db33a8
sha256: 11bc7605ebbf42fd2d35d46f7314b9ba9efe7e446258de73cac04200f6cd3262
sha512: 8f4dc76ab11e456def9450eb0a71dbc584335373bae9c9d85d9f04e87f4c329a0470a6489e66bc4ff29d468e80c7df65ab060ff7f473101bc90c00a3773253c0
ssdeep: 24576:zJNjQrOkLsQEzbxlGJRK92q322A4TxTy48Qi:1N6OOsQotlGJRKe2bTx2L
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2015
InternalName: Boxed
FileVersion: 242, 95, 132, 203
CompanyName: CommonTime Limited
ProductName: Bracketing Win
ProductVersion: 87, 70, 69, 186
FileDescription: Tenable
OriginalFilename: Billion.exe

Win32/Kryptik.EPVX also known as:

K7AntiVirusTrojan ( 0055dd191 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Mayachok.19009
CynetMalicious (score: 100)
ALYacTrojan.TeslaCrypt.Gen.4
CylanceUnsafe
ZillyaTrojan.CryptGen.Win32.1
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_80% (D)
K7GWTrojan ( 0055dd191 )
Cybereasonmalicious.1811cd
SymantecTrojan.Gen.2
ESET-NOD32a variant of Win32/Kryptik.EPVX
AvastWin32:Rovnix-AF [Trj]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.TeslaCrypt.Gen.4
NANO-AntivirusTrojan.Win32.MlwGen.ebgglm
MicroWorld-eScanTrojan.TeslaCrypt.Gen.4
TencentMalware.Win32.Gencirc.114bf46c
Ad-AwareTrojan.TeslaCrypt.Gen.4
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34790.2q0@aueGgjbb
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_HPLOCKY.SM1
McAfee-GW-EditionGeneric.cyt
FireEyeGeneric.mg.85a9f431811cdf1c
EmsisoftTrojan.TeslaCrypt.Gen.4 (B)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1124212
Antiy-AVLTrojan/Generic.ASMalwS.243E426
MicrosoftTrojanDropper:Win32/Rovnix.P
GDataTrojan.TeslaCrypt.Gen.4
AhnLab-V3Malware/Win32.Generic.C1390246
McAfeeGeneric.cyt
MAXmalware (ai score=99)
VBA32BScope.TrojanDownloader.Talalpek
PandaTrj/CI.A
TrendMicro-HouseCallRansom_HPLOCKY.SM1
YandexTrojan.Agent!hi20WpZ5TN8
IkarusTrojan-Dropper.Win32.Rovnix
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.EQFZ!tr
AVGWin32:Rovnix-AF [Trj]

How to remove Win32/Kryptik.EPVX?

Win32/Kryptik.EPVX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment