Malware

How to remove “Win32/Kryptik.GIIX”?

Malware Removal

The Win32/Kryptik.GIIX is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.GIIX virus can do?

  • Executable code extraction
  • Presents an Authenticode digital signature
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Queries information on disks, possibly for anti-virtualization
  • Detects the presence of Wine emulator via registry key
  • Checks the version of Bios, possibly for anti-virtualization
  • Collects information to fingerprint the system

How to determine Win32/Kryptik.GIIX?


File Info:

crc32: F8BBA8FE
md5: 9445ca473e00392b21216c2a3634dd45
name: 9445CA473E00392B21216C2A3634DD45.mlw
sha1: 927cba1f4f6f61d9e0938ec7c20950347b458f4f
sha256: 24c3b296a21d77ad985e9796cfb7a1a3c311cb66b95f8a3471248fd4581d0400
sha512: d9354be0e55478350a0d046a5925d491f2a7e7326ae9347eb47155468d08c38634f48ad9f95834203663bc6cba48f42009a35c370f532ca3aa8d5cd26ad36093
ssdeep: 49152:XYySDbsE8mw5m4tEx/DsPGct4SXaehVwKFpk7Sk:o7DbXU5m4SRoPGct/hte
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Win32/Kryptik.GIIX also known as:

K7AntiVirusTrojan ( 00537eb21 )
Elasticmalicious (high confidence)
DrWebTrojan.InstallCube.3617
CynetMalicious (score: 100)
CAT-QuickHealTrojan.GenericPMF.S3144577
ALYacGen:Variant.Zusy.372635
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.1457020
CrowdStrikewin/malicious_confidence_70% (D)
K7GWTrojan ( 005362741 )
Cybereasonmalicious.73e003
CyrenW32/S-490e8f64!Eldorado
SymantecPUA.ICLoader
ESET-NOD32a variant of Win32/Kryptik.GIIX
APEXMalicious
AvastWin32:AdwareSig [Adw]
Kasperskynot-a-virus:HEUR:AdWare.Win32.Generic
BitDefenderGen:Variant.Zusy.372635
NANO-AntivirusTrojan.Win32.InstallCube.fesrqj
MicroWorld-eScanGen:Variant.Zusy.372635
TencentMalware.Win32.Gencirc.10c9d34e
Ad-AwareGen:Variant.Zusy.372635
SophosMal/Generic-S
ComodoApplication.Win32.ICLoader.GS@84429a
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionPacked-FHK!9445CA473E00
FireEyeGeneric.mg.9445ca473e00392b
EmsisoftApplication.AdFile (A)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Ekstak.loa
AviraTR/ICLoader.Gen8
Antiy-AVLTrojan/Generic.ASMalwS.26EF637
MicrosoftSoftwareBundler:Win32/ICLoader
GDataWin32.Packed.Kryptik.KW
AhnLab-V3PUP/Win32.ICLoader.R250961
Acronissuspicious
McAfeePacked-FHK!9445CA473E00
MAXmalware (ai score=99)
VBA32Trojan.InstallCube
MalwarebytesAdware.InstallCube
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.AA23 (CLASSIC)
YandexTrojan.GenAsa!6WdEPZ9CUXU
IkarusPUA.Win32.ICLoader
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/CoinMiner.GYQC!tr
AVGWin32:AdwareSig [Adw]

How to remove Win32/Kryptik.GIIX?

Win32/Kryptik.GIIX removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment