Malware

Win32/Kryptik.GASN malicious file

Malware Removal

The Win32/Kryptik.GASN is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.GASN virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

live.windowchannel.bid
gool.eventhammer.bid

How to determine Win32/Kryptik.GASN?


File Info:

crc32: 83FF55ED
md5: 145d4f0bace2a6ffbfb2227ed388464d
name: 145D4F0BACE2A6FFBFB2227ED388464D.mlw
sha1: 4e3db64686be6aa5b2314ac0de92260a216b321b
sha256: 213dbbe4e83082117aa11c460e1c5379ba687ad0c86ab17136e645b1f007ddbe
sha512: 750422f04a9d425771b33eb53046c32c7675007e3c80592c005b6168df4b9079fbaddc1ba745dcf4c1af530c29668f5883c605aab91ddc6a752777cb7c6c1cc2
ssdeep: 12288:EwtuImCIAta4rPWmcSfH2aVyXujXd4eC6iTaQa1qmaY:EUuImCIKCGNVhRCXeQaD3
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Kryptik.GASN also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00528e801 )
Elasticmalicious (high confidence)
DrWebTrojan.Vittalia.13892
CynetMalicious (score: 100)
CAT-QuickHealSoftwareBundler.Prepscram.A7
ALYacTrojan.Agent.CSEX
SangforSuspicious.Win32.Save.a
K7GWTrojan ( 00520efc1 )
Cybereasonmalicious.bace2a
CyrenW32/S-0e716584!Eldorado
SymantecTrojan.Gen
ESET-NOD32a variant of Win32/Kryptik.GASN
APEXMalicious
AvastWin32:Adware-gen [Adw]
Kasperskynot-a-virus:HEUR:AdWare.Win32.Generic
BitDefenderTrojan.Agent.CSEX
NANO-AntivirusRiskware.Win32.StartSurf.ewmmzr
MicroWorld-eScanTrojan.Agent.CSEX
TencentMalware.Win32.Gencirc.10b39d9c
Ad-AwareTrojan.Agent.CSEX
SophosGeneric PUA EO (PUA)
ComodoApplication.Win32.IStartSurf.BS@7lng48
BitDefenderThetaGen:NN.ZexaF.34294.TuW@aGJ4cMok
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.bc
FireEyeGeneric.mg.145d4f0bace2a6ff
EmsisoftTrojan.Agent.CSEX (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.StartSurf.akc
AviraHEUR/AGEN.1103293
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.250AC1C
KingsoftWin32.Troj.Generic.dw.(kcloud)
MicrosoftTrojan:Win32/Azorult!ml
GDataTrojan.Agent.CSEX
AhnLab-V3PUP/Win32.Installer.C2301664
Acronissuspicious
McAfeePacked-WG!145D4F0BACE2
MAXmalware (ai score=100)
VBA32BScope.Trojan.Vittalia
MalwarebytesAdware.IStartSurf
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.B07C (CLASSIC)
YandexTrojan.GenAsa!UpM1rZKbbC4
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GGTA!tr
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Win32/Kryptik.GASN?

Win32/Kryptik.GASN removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment