Malware

Win32/Kryptik.GAOK malicious file

Malware Removal

The Win32/Kryptik.GAOK is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.GAOK virus can do?

  • Executable code extraction
  • Injection (inter-process)
  • Injection (Process Hollowing)
  • Creates RWX memory
  • A process attempted to delay the analysis task.
  • The binary likely contains encrypted or compressed data.
  • Executed a process and injected code into it, probably while unpacking

How to determine Win32/Kryptik.GAOK?


File Info:

crc32: 3E37F16E
md5: b8226dd6ab28dce5e38291044e84bcb3
name: B8226DD6AB28DCE5E38291044E84BCB3.mlw
sha1: 803d39666a696e8d59698d6bc9de768949a449b7
sha256: 95dfe15052bae3a06fea0f40014ed9d521a640ca1fde443176bcad9c4ffc3510
sha512: 4c745e8c782dd98be6b8af6e612683eeaed9fc08be88e3e7ffeb8fba0b37a97121743e9a16157285a5ea60fbdd7160eb3f22fb976d8c73e74dfc4056da0ffd55
ssdeep: 12288:V+xM6tvfNClEki7dfzEg7DGdk0jOkdIhvaJjoIA:f+vxzhDGdrdIhSJjr
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Kryptik.GAOK also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 005089c51 )
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Stealer.18284
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.44320397
CylanceUnsafe
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Foreign.0e551c8c
K7GWTrojan ( 005089c51 )
Cybereasonmalicious.6ab28d
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GAOK
APEXMalicious
AvastFileRepMalware
KasperskyTrojan-Ransom.Win32.Foreign.nrwi
BitDefenderTrojan.GenericKD.44320397
NANO-AntivirusTrojan.Win32.Stealer.evinml
MicroWorld-eScanTrojan.GenericKD.44320397
TencentWin32.Trojan.Foreign.Pefi
Ad-AwareTrojan.GenericKD.44320397
SophosMal/Generic-S
ComodoMalware@#2g2v5bdkfyh3s
BitDefenderThetaGen:NN.ZexaF.34628.CyW@aaqLN3li
VIPRETrojan.Win32.Generic!BT
TrendMicroMal_MiliCry-1c
McAfee-GW-EditionBehavesLike.Win32.Generic.gc
FireEyeGeneric.mg.b8226dd6ab28dce5
EmsisoftTrojan.GenericKD.44320397 (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Foreign.hec
AviraHEUR/AGEN.1103378
eGambitUnsafe.AI_Score_98%
MicrosoftTrojan:Win32/Tiggre!rfn
ArcabitTrojan.Generic.D2A4468D
AegisLabTrojan.Win32.Generic.4!c
GDataTrojan.GenericKD.44320397
McAfeeArtemis!B8226DD6AB28
MAXmalware (ai score=99)
VBA32BScope.Backdoor.Mokes
MalwarebytesMachineLearning/Anomalous.97%
PandaTrj/CI.A
TrendMicro-HouseCallMal_MiliCry-1c
RisingRansom.Foreign!8.292 (CLOUD)
YandexTrojan.Foreign!Mt00IzioiMA
IkarusTrojan-Ransom.GandCrab
FortinetW32/Kryptik.FPSG!tr
AVGFileRepMalware
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.Foreign.HgIASOQA

How to remove Win32/Kryptik.GAOK?

Win32/Kryptik.GAOK removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment