Malware

Win32/Kryptik.GJAN removal tips

Malware Removal

The Win32/Kryptik.GJAN is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.GJAN virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Estonian
  • The binary likely contains encrypted or compressed data.
  • Attempts to modify proxy settings
  • Collects information to fingerprint the system

How to determine Win32/Kryptik.GJAN?


File Info:

crc32: 2003DD7A
md5: 3123f8e1abfdee045f191507e3529c26
name: 3123F8E1ABFDEE045F191507E3529C26.mlw
sha1: 66d864240e1d38cf56e688c818efb5b4b08e6760
sha256: 740c1f27de17e5e53096a9f9f89bdcbb50857f5ce2c29de7a06e073e63e427ae
sha512: 5687e4cf7c7df445509cdd8c3c3c7ad0cc9bb13556829894f8e8e34c7c9533a536be6bdf1af99d25ec2f95e08458b9ad1c5e1fe289e22baf9ba0c7961f090c2f
ssdeep: 6144:BvOKXkRnmyL+c7MApPLRNZrHQdeEvhRNJg:BmKXkRZqiM0PbZrHHEvv
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

Translation: 0x0809 0x04b0

Win32/Kryptik.GJAN also known as:

BkavW32.AIDetect.malware1
K7AntiVirusRiskware ( 0040eff71 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.24384
MicroWorld-eScanTrojan.BRMon.Gen.4
CAT-QuickHealTrojan.Chapak.ZZ6
ALYacTrojan.Ransom.GandCrab
CylanceUnsafe
ZillyaTrojan.GenericKD.Win32.126249
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaVirTool:Win32/CeeInject.2dec54d2
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.1abfde
CyrenW32/S-8106a1e5!Eldorado
SymantecPacked.Generic.525
ESET-NOD32a variant of Win32/Kryptik.GJAN
APEXMalicious
AvastWin32:Malware-gen
CynetMalicious (score: 100)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderTrojan.BRMon.Gen.4
NANO-AntivirusTrojan.Win32.Blocker.ffokpi
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
TencentWin32.Trojan.Generic.Lfzn
Ad-AwareTrojan.BRMon.Gen.4
SophosMal/Generic-R + Mal/GandCrab-B
ComodoTrojWare.Win32.Ransom.GandCrab.AQ@7rkz6l
BitDefenderThetaGen:NN.ZexaF.34670.pyW@aybJG2pI
TrendMicroRansom_GANDCRAB.SMALY-3
McAfee-GW-EditionBehavesLike.Win32.Trojan.dh
FireEyeGeneric.mg.3123f8e1abfdee04
EmsisoftTrojan.BRMon.Gen.4 (B)
SentinelOneStatic AI – Suspicious PE
JiangminBackdoor.Mokes.hh
AviraHEUR/AGEN.1102740
MicrosoftVirTool:Win32/CeeInject.ABO!bit
ArcabitTrojan.BRMon.Gen.4
AegisLabTrojan.Win32.Blocker.j!c
GDataTrojan.BRMon.Gen.4
AhnLab-V3Win-Trojan/Gandcrab04.Exp
Acronissuspicious
McAfeePacked-FJJ!3123F8E1ABFD
MAXmalware (ai score=81)
VBA32BScope.TrojanDownloader.Upatre
MalwarebytesTrojan.MalPack
PandaTrj/Genetic.gen
TrendMicro-HouseCallRansom_GANDCRAB.SMALY-3
RisingRansom.GandCrypt!8.F33E (CLOUD)
YandexTrojan.GenAsa!b1bzsEtBmeQ
IkarusVirus.Win32.CeeInject
MaxSecureRansomeware.GandCrypt.Gen
FortinetW32/Kryptik.GKJF!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml
Qihoo-360Win32/Trojan.CeeInject.HgIASOcA

How to remove Win32/Kryptik.GJAN?

Win32/Kryptik.GJAN removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment