Malware

Should I remove “Win32/Kryptik.GJPJ”?

Malware Removal

The Win32/Kryptik.GJPJ is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.GJPJ virus can do?

  • The binary likely contains encrypted or compressed data.
  • Attempts to repeatedly call a single API many times in order to delay analysis time
  • Network activity detected but not expressed in API logs

How to determine Win32/Kryptik.GJPJ?


File Info:

crc32: 0865D72F
md5: bd37d6e938b472b1b8e421b5df3fbcc5
name: BD37D6E938B472B1B8E421B5DF3FBCC5.mlw
sha1: 902e688fdcc5de400bb1a52d684fecbd31ca4844
sha256: d63fad16d6cfe1836b3db159d6e178fc52e50d5f6587ad6966e54c640553c503
sha512: 284928fb2e80a89d9a34db92731f1ff68914caf844ba1970dd7c30652cd4bdb2c2a5398d665f1181b026b4d6695c498a2d436538a25cbb33000413a99fdb1815
ssdeep: 6144:f/mxASOk/qHOIlq27oJcdu2gcBvBEXn9Iu0TWr2QGzTuWg6kbwzTc0ee:m2SRCHdw27o2U23vBEXnvcW6D9gprNe
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright xa9 2013. All rights reserved.
InternalName: Wm Indie
CompanyName: GuaHao
LegalTrademarks: Copyright xa9 2013. All rights reserved.
Comments: Array Pentest Ipersiststreaminit
ProductName: Wm Indie
ProductVersion: 5.6.7.4
FileDescription: Array Pentest Ipersiststreaminit
Translation: 0x0409 0x04b0

Win32/Kryptik.GJPJ also known as:

K7AntiVirusTrojan ( 005395251 )
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacTrojan.GenericKD.31142078
CylanceUnsafe
ZillyaTrojan.Blocker.Win32.40134
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/Blocker.8f9137b1
K7GWTrojan ( 005395251 )
Cybereasonmalicious.938b47
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GJPJ
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Blocker.ldor
BitDefenderTrojan.GenericKD.31142078
NANO-AntivirusTrojan.Win32.Blocker.fhohhf
MicroWorld-eScanTrojan.GenericKD.31142078
TencentWin32.Trojan.Blocker.Pgmp
Ad-AwareTrojan.GenericKD.31142078
SophosMal/Generic-S
ComodoMalware@#2njt7wz3t6gtp
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.BadFile.hh
FireEyeGeneric.mg.bd37d6e938b472b1
EmsisoftTrojan.GenericKD.31142078 (B)
SentinelOneStatic AI – Suspicious PE
JiangminTrojan.Blocker.iwe
AviraTR/Kryptik.heftr
Antiy-AVLTrojan/Generic.ASMalwS.2723F82
MicrosoftTrojan:Win32/Occamy.CD6
ZoneAlarmTrojan-Ransom.Win32.Blocker.ldor
GDataTrojan.GenericKD.31142078
TACHYONRansom/W32.Blocker.561664
AhnLab-V3Malware/Win32.Generic.C2645372
McAfeeArtemis!BD37D6E938B4
MAXmalware (ai score=95)
VBA32TrojanRansom.Blocker
PandaTrj/GdSda.A
YandexTrojan.Blocker!JkquyTxY/7M
IkarusTrojan-Ransom.GandCrab
FortinetW32/Kryptik.GKDU!tr.ransom
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Win32/Kryptik.GJPJ?

Win32/Kryptik.GJPJ removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment