Malware

Win32/Kryptik.GDSA malicious file

Malware Removal

The Win32/Kryptik.GDSA is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.GDSA virus can do?

  • Unconventionial language used in binary resources: Spanish (Guatemala)
  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/Kryptik.GDSA?


File Info:

crc32: 44DE3773
md5: b045619c51603937bff8f832fb125339
name: B045619C51603937BFF8F832FB125339.mlw
sha1: 2c8ddc87345e1c52173d9ed19161adbf60efe125
sha256: 4e21cb59a18a4be27cf9879fdcc40411cd9ec5bc8b4340101d4eed2a3ff82c49
sha512: edf2b72db007ad5e1e80e3dc40fbf61e2ef7cff1019e22c3355137b0018f1578230f9a841763481b53d045225d15fd5a0f4602db03d1b96622301893e7a2f372
ssdeep: 3072:bxwd+YpOIvB2ZwanR28OBNxXy6T6QX4xkSVMRXv4o0cVbGAXRHUVp4Qz61RMoyD:4ppJx1Tj48VqABUVCkMRM76l+xVt
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Kryptik.GDSA also known as:

BkavW32.AIDetect.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanTrojan.BRMon.Gen.3
FireEyeGeneric.mg.b045619c51603937
CAT-QuickHealTrojan.Chapak.ZZ5
ALYacTrojan.BRMon.Gen.3
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforTrojan.Win32.Save.a
K7AntiVirusTrojan ( 0053305e1 )
BitDefenderTrojan.BRMon.Gen.3
K7GWTrojan ( 0053305e1 )
Cybereasonmalicious.c51603
CyrenW32/S-eb4df611!Eldorado
SymantecPacked.Generic.525
APEXMalicious
AvastFileRepMalware
ClamAVWin.Dropper.Gandcrab-7362694-0
KasperskyHEUR:Trojan.Win32.Generic
NANO-AntivirusTrojan.Win32.Encoder.eymtcs
AegisLabTrojan.Multi.Generic.4!c
RisingTrojan.Kryptik!8.8 (CLOUD)
Ad-AwareTrojan.BRMon.Gen.3
SophosMal/Generic-R + Mal/GandCrab-D
ComodoTrojWare.Win32.Cloxer.AY@7o68fu
F-SecureHeuristic.HEUR/AGEN.1103298
DrWebTrojan.Encoder.3953
ZillyaTrojan.Agentb.Win32.18998
TrendMicroRansom_GANDCRAB.TIAOBFR
McAfee-GW-EditionBehavesLike.Win32.Generic.dc
EmsisoftTrojan.BRMon.Gen.3 (B)
IkarusTrojan-Ransom.FileCrypter
JiangminTrojan.Agentb.ctk
AviraHEUR/AGEN.1103298
eGambitUnsafe.AI_Score_96%
Antiy-AVLTrojan/Win32.Agentb
MicrosoftTrojan:Win32/GandCrab.KDS!MTB
ArcabitTrojan.BRMon.Gen.3
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataTrojan.BRMon.Gen.3
CynetMalicious (score: 100)
AhnLab-V3Win-Trojan/Gandcrab02.Exp
Acronissuspicious
McAfeeGenericRXEE-LR!B045619C5160
MAXmalware (ai score=96)
MalwarebytesTrojan.MalPack.GS
PandaTrj/Genetic.gen
ESET-NOD32a variant of Win32/Kryptik.GDSA
TrendMicro-HouseCallRansom_GANDCRAB.TIAOBFR
TencentMalware.Win32.Gencirc.10c88338
YandexTrojan.GenAsa!t8Ui//Gupz0
SentinelOneStatic AI – Malicious PE
MaxSecureRansomeware.CRAB.gen
FortinetW32/GenKryptik.CNAR!tr
BitDefenderThetaGen:NN.ZexaF.34590.nyW@aeuKX5O
AVGFileRepMalware
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_100% (D)
Qihoo-360Win32/Trojan.56c

How to remove Win32/Kryptik.GDSA?

Win32/Kryptik.GDSA removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment