Malware

How to remove “Win32/Kryptik.GEUX”?

Malware Removal

The Win32/Kryptik.GEUX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.GEUX virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

Related domains:

lip.healthcakes.men
kiss.oatmealscene.loan

How to determine Win32/Kryptik.GEUX?


File Info:

crc32: 0955A828
md5: 907ec4fce32e5faabb020a9b5ffc3b31
name: 907EC4FCE32E5FAABB020A9B5FFC3B31.mlw
sha1: ad9b896aaa926a886cc210475ed8c5ffe72c3e5e
sha256: 1e3c4e2d7654c37508acf6774689fd79e079a2fe39d9d738a7962d1bd1318284
sha512: f84129715fbf78c6b372f611688e410991702b2f86cabd3ceebd9897ad9c1f8ce791c5126f695da23143e2a86a0144725a3f52a4897a1e940d8346ac0356874c
ssdeep: 12288:G8Jo3PQchQacQYVJvPt1Ex5VcWF/qUhgf03HoPx3yYkqmyTMS:G8Jo/QBacNv3oLDhgsCVyYk
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Kryptik.GEUX also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00528e801 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Siggen7.42270
CynetMalicious (score: 100)
CAT-QuickHealSoftwareBundler.Prepscram.A7
ALYacTrojan.Agent.CWOS
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
K7GWTrojan ( 00528e801 )
Cybereasonmalicious.ce32e5
CyrenW32/StartSurf.AE.gen!Eldorado
SymantecAdware.IstartSurf
ESET-NOD32a variant of Win32/Kryptik.GEUX
APEXMalicious
AvastWin32:StartSurf-C [Adw]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.Agent.CWOS
NANO-AntivirusTrojan.Win32.Kryptik.ezdadx
MicroWorld-eScanTrojan.Agent.CWOS
TencentMalware.Win32.Gencirc.10b3a0f9
Ad-AwareTrojan.Agent.CWOS
SophosMal/Generic-S
ComodoApplication.Win32.IStartSurf.BS@7lng48
F-SecureHeuristic.HEUR/AGEN.1103293
BitDefenderThetaGen:NN.ZexaF.34266.QyW@aG6n0Xki
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.jc
FireEyeGeneric.mg.907ec4fce32e5faa
EmsisoftTrojan.Agent.CWOS (B)
SentinelOneStatic AI – Malicious PE
JiangminRiskTool.BitMiner.afqj
AviraHEUR/AGEN.1103293
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Win32.AGeneric
MicrosoftTrojan:Win32/IStartSurf.PVB!MTB
ArcabitTrojan.Agent.CWOS
GDataTrojan.Agent.CWOS
AhnLab-V3PUP/Win32.ICLoader.R223330
Acronissuspicious
McAfeeGenericRXEK-IY!907EC4FCE32E
MAXmalware (ai score=96)
VBA32BScope.AdWare.StartSurf
MalwarebytesMalware.AI.157432341
PandaTrj/Genetic.gen
RisingMalware.Obscure/Heur!1.A89E (CLASSIC)
YandexTrojan.GenAsa!+RuUgjVh440
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.FTMV!tr
AVGWin32:StartSurf-C [Adw]
Paloaltogeneric.ml

How to remove Win32/Kryptik.GEUX?

Win32/Kryptik.GEUX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment