Malware

Win32/Kryptik.FUGW removal guide

Malware Removal

The Win32/Kryptik.FUGW is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.FUGW virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.

How to determine Win32/Kryptik.FUGW?


File Info:

crc32: B9120977
md5: b02a20bf7e7853d72fd9e35c3fc5f4a5
name: B02A20BF7E7853D72FD9E35C3FC5F4A5.mlw
sha1: 016be2c1210a4b8998682e320d6ada38d4f32e1a
sha256: 04132681e4e62f8db3c58734dbed5243098ba80ef4c0be383abe9b461875c8d9
sha512: 12e72dbd23b1593280e911eb58993a514c2657be771f25935f3c2979b72c38cec5f016fa1c904382322059b5cde789e19d5f19a184b49ae064f831be46518bd7
ssdeep: 6144:ZYWn+94TxNHaX0EjxCYci4gAQsaIV4J/9NGJp4A:ZYWnQ4TDHaX0kxCLi7pIV4XN+4A
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9Baidu. All rights reserved.
InternalName: Intersection
FileVersion: 2.1.1.3
CompanyName: Baidu
FileDescription: Cells Fostered Cnsider Lastly
LegalTrademarks: Copyright xa9Baidu. All rights reserved.
Comments: Cells Fostered Cnsider Lastly
ProductName: Intersection
Languages: English
ProductVersion: 2.1.1.3
PrivateBuild: 2.1.1.3
OriginalFilename: Intersection.exe
Translation: 0x0409 0x04b0

Win32/Kryptik.FUGW also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0056e92e1 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Ransom.Shade.27
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaTrojan:Win32/Yakes.6124f384
K7GWTrojan ( 0056e92e1 )
Cybereasonmalicious.f7e785
ESET-NOD32a variant of Win32/Kryptik.FUGW
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan.Win32.Yakes.vavc
BitDefenderGen:Variant.Ransom.Shade.27
NANO-AntivirusTrojan.Win32.Yakes.evnfus
MicroWorld-eScanGen:Variant.Ransom.Shade.27
TencentWin32.Trojan.Yakes.Pbew
Ad-AwareGen:Variant.Ransom.Shade.27
SophosMal/Generic-S + Mal/Kryptik-DC
ComodoMalware@#3l5f8jpffzsx4
VIPRETrojan.Win32.Generic!BT
TrendMicroRansom_HPLOCKY.SME
McAfee-GW-EditionBehavesLike.Win32.Dropper.fc
FireEyeGeneric.mg.b02a20bf7e7853d7
EmsisoftTrojan.Agent (A)
SentinelOneStatic AI – Suspicious PE
AviraHEUR/AGEN.1110230
Antiy-AVLTrojan/Win32.Yakes
MicrosoftTrojan:Win32/Dynamer!rfn
ArcabitTrojan.Ransom.Shade.27
AegisLabTrojan.Multi.Generic.4!c
ZoneAlarmTrojan.Win32.Yakes.vavc
GDataGen:Variant.Ransom.Shade.27
Acronissuspicious
MAXmalware (ai score=97)
MalwarebytesMachineLearning/Anomalous.95%
PandaTrj/CI.A
TrendMicro-HouseCallRansom_HPLOCKY.SME
RisingRansom.Locky!8.1CD4 (CLOUD)
YandexTrojan.Yakes!qNE3TWf9Gso
IkarusTrojan-Spy.Remcos
eGambitUnsafe.AI_Score_99%
FortinetW32/Kryptik.FUGW!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Botnet.Yakes.HgIASOUA

How to remove Win32/Kryptik.FUGW?

Win32/Kryptik.FUGW removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment