Malware

What is “Win32/Kryptik.GFQN”?

Malware Removal

The Win32/Kryptik.GFQN is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.GFQN virus can do?

  • The binary likely contains encrypted or compressed data.
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
lip.healthcakes.men
kiss.oatmealscene.loan
a.tomx.xyz

How to determine Win32/Kryptik.GFQN?


File Info:

crc32: DD529EE0
md5: 8cc6e86392ff3a53d0e3087addacd675
name: 8CC6E86392FF3A53D0E3087ADDACD675.mlw
sha1: 5baae86c771253ba3523e13df8be452164848dc0
sha256: 5b684f71247a39f11dc63137423757b3b7e2c633e0e58f3dfde03240cc1a049b
sha512: 287262c04915f7da76a611f5b56af61016e16be649566ff35db9ddd55454d29c788e6c541510e3306d16667e4b18961bbf31f4f078665bf3ff89f505d01def37
ssdeep: 12288:2ce949Xqy53xAsdN/dbmZDkxHxn12VzAQtwqCbr767/1RWW/0wa:2ce949Xqy53xAsdBH2aQtuS7/1RWuf
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Kryptik.GFQN also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0052f5b51 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
DrWebTrojan.VittaliaENT.11
CynetMalicious (score: 99)
CAT-QuickHealTrojan.WacatacRI.S19858968
ALYacTrojan.Agent.CXUT
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.1400437
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_60% (D)
K7GWTrojan ( 0052df4b1 )
Cybereasonmalicious.392ff3
CyrenW32/S-cf5b16cc!Eldorado
ESET-NOD32a variant of Win32/Kryptik.GFQN
APEXMalicious
AvastWin32:StartSurf-B [Adw]
Kasperskynot-a-virus:HEUR:AdWare.Win32.Generic
BitDefenderTrojan.Agent.CXUT
NANO-AntivirusTrojan.Win32.VittaliaENT.fahhgy
MicroWorld-eScanTrojan.Agent.CXUT
TencentMalware.Win32.Gencirc.10b3e95c
Ad-AwareTrojan.Agent.CXUT
SophosGeneric ML PUA (PUA)
ComodoApplication.Win32.IStartSurf.PS@8c4m91
BitDefenderThetaGen:NN.ZexaF.34170.QyW@aqik7cmi
VIPRETrojan.Win32.Generic!BT
FireEyeGeneric.mg.8cc6e86392ff3a53
EmsisoftTrojan.Agent.CXUT (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Chapak.fn
WebrootW32.Adware.Gen
AviraHEUR/AGEN.1103293
eGambitUnsafe.AI_Score_99%
Antiy-AVLTrojan/Generic.ASMalwS.25C29B7
MicrosoftTrojan:Win32/Wacatac.B!ml
SUPERAntiSpywareAdware.IStartSurf/Variant
GDataTrojan.Agent.CXUT
TACHYONTrojan/W32.Agent.704000.CV
AhnLab-V3PUP/Win32.ICLoader.R246172
Acronissuspicious
McAfeePacked-XP.c!8CC6E86392FF
MAXmalware (ai score=97)
VBA32Trojan.VittaliaENT
MalwarebytesAdware.IStartSurf
PandaTrj/Genetic.gen
RisingMalware.Obscure/Heur!1.9E03 (CLASSIC)
YandexTrojan.GenAsa!luSFKlMHQdk
IkarusTrojan.Agent
MaxSecureTrojan.Malware.121218.susgen
FortinetW32/Kryptik.GFGF!tr
AVGWin32:StartSurf-B [Adw]
Paloaltogeneric.ml

How to remove Win32/Kryptik.GFQN?

Win32/Kryptik.GFQN removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment