Malware

How to remove “Win32/Kryptik.GKYF”?

Malware Removal

The Win32/Kryptik.GKYF is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.GKYF virus can do?

  • Executable code extraction
  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Queries information on disks, possibly for anti-virtualization
  • Detects the presence of Wine emulator via registry key
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/Kryptik.GKYF?


File Info:

crc32: 0038A74E
md5: f19ea0a6c88c2b5ed5944eab6829fd0e
name: F19EA0A6C88C2B5ED5944EAB6829FD0E.mlw
sha1: 4553d5b30972de580412d92c971e505275379e62
sha256: 1dec0352a33ac46c6ef5bc25995c53b473d27d767933c93653139764e06fa577
sha512: 98d706bd7299a273acddd49402c07c2dfdfc7ccae99346b033898c1fa7dc482a2e7c3e60846ed25ef794c80b6ca1a7a93af3244b1e6af3ccfd8b94da5c8cbfb1
ssdeep: 49152:MN6oegkBRgq5ZYc04JNkJbxnTiDDsPGn4J1TeMVwKFMoDC0IOQ13lui:M5kBRgwNmJbxnTgoPGnfMtMAXm3
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: ETFXRepair.exe
FileVersion: 14.0.1056.2
ProductName: NET Components 4.51 free installer
ProductVersion: 14.0.1056.2
FileDescription: NET Components 4.51 Setup
OriginalFilename: ETFXRepair.exe
Translation: 0x0409 0x04b0

Win32/Kryptik.GKYF also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0053e8521 )
Elasticmalicious (high confidence)
DrWebTrojan.InstallCube.3673
CynetMalicious (score: 100)
CAT-QuickHealTrojan.Ekstak.S3560696
ALYacGen:Variant.Zusy.365490
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.1494690
SangforTrojan.Win32.Fugrafa.5
AlibabaTrojan:Win32/Katusha.081fd2dc
K7GWTrojan ( 0053e8521 )
Cybereasonmalicious.6c88c2
SymantecPUA.ICLoader
ESET-NOD32a variant of Win32/Kryptik.GKYF
APEXMalicious
AvastWin32:ICLoader-X [Adw]
KasperskyUDS:Trojan.Win32.Ekstak.a
BitDefenderGen:Variant.Zusy.365490
NANO-AntivirusTrojan.Win32.Katusha.fhzvsl
MicroWorld-eScanGen:Variant.Zusy.365490
TencentMalware.Win32.Gencirc.10cc493a
Ad-AwareGen:Variant.Zusy.365490
SophosMal/Generic-S
ComodoApplication.Win32.ICLoader.GS@84429a
BitDefenderThetaGen:NN.ZexaF.34266.Us0@ayg99yci
McAfee-GW-EditionBehavesLike.Win32.Generic.vc
FireEyeGeneric.mg.f19ea0a6c88c2b5e
EmsisoftGen:Variant.Zusy.365490 (B)
SentinelOneStatic AI – Malicious PE
JiangminAdWare.ICLoader.kkr
AviraTR/ICLoader.Gen8
eGambitUnsafe.AI_Score_100%
Antiy-AVLTrojan/Generic.ASMalwS.28155DC
MicrosoftProgram:Win32/Unwaders.C!rfn
ArcabitTrojan.Zusy.D593B2
GDataGen:Variant.Zusy.365490
AhnLab-V3PUP/Win32.ICLoader.R237813
Acronissuspicious
McAfeePacked-FME!F19EA0A6C88C
MAXmalware (ai score=99)
VBA32BScope.Trojan.InstallCube
MalwarebytesAdware.ICLoader.Generic
PandaTrj/Genetic.gen
RisingTrojan.Kryptik!1.AA23 (CLASSIC)
IkarusPUA.ICLoader
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/CoinMiner.GYQC!tr
AVGWin32:ICLoader-X [Adw]
Paloaltogeneric.ml

How to remove Win32/Kryptik.GKYF?

Win32/Kryptik.GKYF removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment