Malware

What is “Win32/Kryptik.GFLO”?

Malware Removal

The Win32/Kryptik.GFLO is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.GFLO virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Collects information about installed applications
  • Anomalous binary characteristics

Related domains:

scorpiondl.ru

How to determine Win32/Kryptik.GFLO?


File Info:

crc32: 05D18B07
md5: 5b5d76f1ca6fe1089e8982748d537b53
name: 5B5D76F1CA6FE1089E8982748D537B53.mlw
sha1: 5a7941a83038a7bb21b7ff798a92940901e55826
sha256: 20a7ef9ff29984d6969ab9009b09c61ab45a5eb3e3a0c7dade67245d9c2d0164
sha512: 50d9bbf3e824510fdba7b3c2285a2769d397f7ba6379957f548a2dbe712774430210cc395ce2c9e68720c33e0b510d12306e1d24837b75b061c85072660daa23
ssdeep: 98304:YLxRFH6MhjdXtRdHLckzundU22i1jZN6eHICzjsYKF8dFYDx36:OYMFZNHLc0+FP8eHvTSWo36
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: xa9Fasbuiterat idale
InternalName: MEENTA.EXE
FileVersion: 4.8.6.6
CompanyName: xa9Fasbuiterat idale
ProductName: MEENTA
ProductVersion: 4.8.6.6
OriginalFilename: meenta.exe
Translation: 0x0409 0x04e4

Win32/Kryptik.GFLO also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0056ecfd1 )
Elasticmalicious (high confidence)
DrWebTrojan.Zadved.779
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Occamy.A1
ALYacGen:Heur.Mint.Zamg.1
CylanceUnsafe
ZillyaAdware.AdLoad.Win32.23836
K7GWTrojan ( 0056ecfd1 )
Cybereasonmalicious.1ca6fe
CyrenW32/S-a680f950!Eldorado
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GFLO
APEXMalicious
AvastWin32:Adware-gen [Adw]
Kasperskynot-a-virus:HEUR:AdWare.Win32.StartSurf.gen
BitDefenderGen:Heur.Mint.Zamg.1
NANO-AntivirusRiskware.Win32.AdLoad.faejsp
MicroWorld-eScanGen:Heur.Mint.Zamg.1
TencentMalware.Win32.Gencirc.10ba5e0e
Ad-AwareGen:Heur.Mint.Zamg.1
SophosMal/Generic-S
ComodoApplication.Win32.Dlhelper.GFLO@7m7rh0
BitDefenderThetaGen:NN.ZexaF.34294.@x0@aGNNVaoi
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.tc
FireEyeGeneric.mg.5b5d76f1ca6fe108
EmsisoftGen:Heur.Mint.Zamg.1 (B)
JiangminAdware.Adload.anm
AviraHEUR/AGEN.1113746
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.25AE870
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftTrojan:Win32/Occamy.C
GDataGen:Heur.Mint.Zamg.1
AhnLab-V3PUP/Win32.AdLoad.R225257
Acronissuspicious
McAfeeGenericRXAA-AA!5B5D76F1CA6F
MAXmalware (ai score=100)
VBA32BScope.Adware.AdLoad
PandaTrj/Genetic.gen
RisingAdware.Adload!1.B2A5 (CLASSIC)
YandexTrojan.GenAsa!c3QtR0dX+UM
SentinelOneStatic AI – Malicious PE
FortinetW32/Kryptik.GFCI!tr
AVGWin32:Adware-gen [Adw]
Paloaltogeneric.ml

How to remove Win32/Kryptik.GFLO?

Win32/Kryptik.GFLO removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment