Malware

Should I remove “Win32/Kryptik.GBJB”?

Malware Removal

The Win32/Kryptik.GBJB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.GBJB virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • Unconventionial language used in binary resources: Russian
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

How to determine Win32/Kryptik.GBJB?


File Info:

crc32: 007409EC
md5: 233e85bbada881bc6f7502a70be9ab07
name: 233E85BBADA881BC6F7502A70BE9AB07.mlw
sha1: ed21cf9fb2e289c35329885a686b5b61102a0edd
sha256: 1a6b2f760106ed49ab538ea8b53d130d06a6c94e5e05d800dcddd53854417d8e
sha512: 1261cfee690796e0f826685fc53b1a067b528c535e898f4b77a2081e4789357c3cab6f03933963dea16ec351969fba363f55e3b0e73b3a59854359ff3562b866
ssdeep: 24576:3JJqix60L8Kbhc7pYnDAWMlncE3aPXWc9t1WkEWySt+Pe13vKsq4SJVeIe4:ConhhLIcXPGct4Yype5VhKFe4
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Kryptik.GBJB also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 005234c61 )
Elasticmalicious (high confidence)
DrWebTrojan.InstallCube.2633
CynetMalicious (score: 100)
CAT-QuickHealSwBundler.ICLoader.YB5
ALYacGen:Variant.Adware.ICloader.Symmi.26
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.1343694
SangforTrojan.Win32.Save.a
K7GWTrojan ( 005234c61 )
Cybereasonmalicious.bada88
CyrenW32/S-467d30ba!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GBJB
APEXMalicious
AvastFileRepMalware
KasperskyUDS:DangerousObject.Multi.Generic
BitDefenderGen:Variant.Adware.ICloader.Symmi.26
NANO-AntivirusTrojan.Win32.InstallCube.ewumgg
MicroWorld-eScanGen:Variant.Adware.ICloader.Symmi.26
TencentMalware.Win32.Gencirc.10b3e1bb
Ad-AwareGen:Variant.Adware.ICloader.Symmi.26
SophosGeneric PUA ON (PUA)
ComodoApplication.Win32.ICLoader.GEFO@7k8obh
BitDefenderThetaGen:NN.ZexaF.34236.ksX@a0A!6Hfk
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionGenericRXEO-DM!233E85BBADA8
FireEyeGeneric.mg.233e85bbada881bc
EmsisoftApplication.AdLoad (A)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.Generic.mpsk
AviraTR/Crypt.XPACK.Gen
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.23F537B
MicrosoftPUADlManager:Win32/InstallCube
ArcabitTrojan.Adware.ICloader.Symmi.26
ZoneAlarmHEUR:Packed.Win32.Katusha.gen
GDataGen:Variant.Adware.ICloader.Symmi.26
AhnLab-V3PUP/Win32.FileTour.R218140
Acronissuspicious
McAfeeGenericRXEO-DM!233E85BBADA8
MAXmalware (ai score=63)
VBA32Adware.ICLoader
MalwarebytesAdware.ICLoader
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.AFA6 (CLASSIC)
YandexTrojan.GenAsa!rh/jOichKmc
IkarusTrojan-Downloader.Agent
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/CoinMiner.GYQC!tr
AVGFileRepMalware

How to remove Win32/Kryptik.GBJB?

Win32/Kryptik.GBJB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment