Malware

Win32/Kryptik.EXKQ removal guide

Malware Removal

The Win32/Kryptik.EXKQ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.EXKQ virus can do?

  • Unconventionial language used in binary resources: Hebrew
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/Kryptik.EXKQ?


File Info:

crc32: 47F5C2E7
md5: be323e71250f3733957f06f680d70130
name: BE323E71250F3733957F06F680D70130.mlw
sha1: 2b169b1bda5914a56d7fb58eae3e37afae5ff4f9
sha256: 8dfe8f1f579dc87e39bf506d38d323085ae2847fb7cdd0cb3c1eb993163db552
sha512: 978f64f9192dd88b3f15bb64d386dac22d3327a74c0b1ae4b7909adcde2e1892d4718f673aec2b4a8c228a2e401f23ca7a5805be8a2201f43003723c0ba253a2
ssdeep: 3072:cSxpX/WqtNGk2fOhbeRf1WenpX5z6/eLVhNmsdsKsKsKsKsEI0:JxpvD2fQ65npX5z6bsdsKsKsKsKsEI
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

8, 6, 4332:
galTrademarks: : x01OriginalFilename
rediMail, Ltd.: v'x01FileDescription
ter Creator Application: @x0ex01ProductVersion
ter Creator: j#x01LegalCopyright
ivateBuild: Vx1bx01ProductName
yright xa9 2000 IncrediMail, Ltd.: (
Comments: Dx12x01CompanyName
ecialBuild: D
c.exe:
rediMail Letter Creator Application: <x0ex01FileVersion
Translation: 0x0409 0x04b0

Win32/Kryptik.EXKQ also known as:

BkavW32.AIDetect.malware1
K7AntiVirusBackdoor ( 005328fd1 )
Elasticmalicious (high confidence)
DrWebTrojan.Siggen6.58358
CynetMalicious (score: 100)
CAT-QuickHealRansom.Crowti.G4
ALYacTrojan.Ransom.Cerber.1
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.2050404
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaTrojan:Win32/Yakes.f43625ea
K7GWBackdoor ( 005328fd1 )
Cybereasonmalicious.1250f3
BaiduWin32.Trojan.Filecoder.q
SymantecPacked.Generic.459
ESET-NOD32a variant of Win32/Kryptik.EXKQ
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Ransom.Cerber.1
NANO-AntivirusTrojan.Win32.Kryptik.evrmxp
MicroWorld-eScanTrojan.Ransom.Cerber.1
TencentWin32.Trojan.Generic.Pgwg
Ad-AwareTrojan.Ransom.Cerber.1
SophosML/PE-A + Mal/EncPk-APV
ComodoTrojWare.Win32.Kryptik.FBWM@6gt9t1
BitDefenderThetaAI:Packer.C587033C1F
VIPRETrojan.Win32.Reveton.a (v)
TrendMicroRansom_CERBER.SMFE
McAfee-GW-EditionBehavesLike.Win32.Ransomware.ch
FireEyeGeneric.mg.be323e71250f3733
EmsisoftTrojan.Ransom.Cerber.1 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.fmxne
AviraHEUR/AGEN.1132833
eGambitUnsafe.AI_Score_83%
MicrosoftTrojan:Win32/Yakes.DSP!MTB
ArcabitTrojan.Ransom.Cerber.1
AegisLabTrojan.Win32.Generic.4!c
GDataTrojan.Ransom.Cerber.1
Acronissuspicious
McAfeeArtemis!BE323E71250F
MAXmalware (ai score=100)
VBA32BScope.Trojan.Encoder
PandaTrj/GdSda.A
TrendMicro-HouseCallRansom_CERBER.SMFE
RisingBackdoor.Vawtrak!1.AEEC (CLASSIC)
YandexTrojan.GenAsa!XeLcxCtIth4
IkarusPUA.Downloader
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Dridex.DD!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Win32/Kryptik.EXKQ?

Win32/Kryptik.EXKQ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment