Malware

Win32/Kryptik.GFAZ malicious file

Malware Removal

The Win32/Kryptik.GFAZ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.GFAZ virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz
lip.healthcakes.men
kiss.oatmealscene.loan

How to determine Win32/Kryptik.GFAZ?


File Info:

crc32: BA25F692
md5: 9002dd4a04b1995a7e5212052b226f8c
name: 9002DD4A04B1995A7E5212052B226F8C.mlw
sha1: f3e0ad8b4ef09c6e44a6907424f7781bae982cbb
sha256: 24becb93244b25d9a8d2c04235d49d51ccad10392841f817c5e8de2c3007c92d
sha512: 0137e5534c3c81914f409d97240d9acfaa2253f088b289c4f9bc2f2baea2e4958fa3231b7725aa01764ed336e86d669b200829d238788c16f0a8ad3c449db2a4
ssdeep: 12288:KVU5EKdNU4NtrFzDvkvkTMrqDiFqBzOlviwdP5VacP1PWJ:KVxKHU4nFXkvkTMrc2KwhN
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Kryptik.GFAZ also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 00528e801 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.Vittalia.16373
CynetMalicious (score: 100)
CAT-QuickHealPUA.PrepscramPMF.S18977619
ALYacApplication.Bundler.AWM
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.1398107
SangforTrojan.Win32.Save.a
K7GWTrojan ( 00528e801 )
Cybereasonmalicious.a04b19
CyrenW32/StartSurf.AE.gen!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GFAZ
APEXMalicious
AvastWin32:StartSurf-C [Adw]
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderApplication.Bundler.AWM
NANO-AntivirusTrojan.Win32.Vittalia.fadomu
MicroWorld-eScanApplication.Bundler.AWM
TencentMalware.Win32.Gencirc.10b3e3ad
Ad-AwareApplication.Bundler.AWM
SophosMal/Generic-S
ComodoApplication.Win32.IStartSurf.PS@8c4m91
BitDefenderThetaGen:NN.ZexaF.34266.sAW@ai8mXTli
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.vz
FireEyeGeneric.mg.9002dd4a04b1995a
EmsisoftApplication.Bundler.AWM (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Generic.cblqh
AviraTR/Crypt.ZPACK.gjetr
eGambitUnsafe.AI_Score_100%
MicrosoftTrojan:Win32/Occamy.C24
GDataApplication.Bundler.AWM
AhnLab-V3PUP/Win32.BundleInstaller.R224082
Acronissuspicious
McAfeeGenericRXEM-UQ!9002DD4A04B1
MAXmalware (ai score=99)
VBA32Adware.Prepscram
MalwarebytesAdware.IStartSurf
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.B0E9 (CLASSIC)
YandexTrojan.GenAsa!+vsPkJBy4hE
IkarusTrojan.Crypt9
MaxSecureTrojan.Malware.21919340.susgen
FortinetW32/Kryptik.FTMV!tr
AVGWin32:StartSurf-C [Adw]
Paloaltogeneric.ml

How to remove Win32/Kryptik.GFAZ?

Win32/Kryptik.GFAZ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment