Malware

Win32/Kryptik.GLAE information

Malware Removal

The Win32/Kryptik.GLAE is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.GLAE virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Attempts to connect to a dead IP:Port (6 unique times)
  • HTTP traffic contains suspicious features which may be indicative of malware related traffic
  • Performs some HTTP requests
  • Unconventionial language used in binary resources: Spanish
  • The binary likely contains encrypted or compressed data.
  • Exhibits possible ransomware file modification behavior
  • Creates a hidden or system file
  • Checks the CPU name from registry, possibly for anti-virtualization
  • Attempts to modify proxy settings

Related domains:

www.billerimpex.com
www.macartegrise.eu
www.poketeg.com
perovaphoto.ru
asl-company.ru
www.fabbfoundation.gm
www.perfectfunnelblueprint.com
www.wash-wear.com
ocsp.digicert.com
pp-panda74.ru
cevent.net
bellytobabyphotographyseattle.com
alem.be
apps.identrust.com
crl.identrust.com
boatshowradio.com
dna-cp.com
acbt.fr
r3.o.lencr.org
wpakademi.com
www.cakav.hu
www.mimid.cz
6chen.cn
goodapd.website
oceanlinen.com
tommarmores.com.br
nesten.dk
zaeba.co.uk
www.n2plus.co.th
koloritplus.ru
h5s.vn
marketisleri.com
www.toflyaviacao.com.br
www.rment.in
www.lagouttedelixir.com
www.krishnagrp.com
big-game-fishing-croatia.hr
mauricionacif.com
www.ismcrossconnect.com
aurumwedding.ru
test.theveeview.com
relectrica.com.mx
bethel.com.ve
vjccons.com.vn
bloghalm.eu
cyclevegas.com
royal.by
www.himmerlandgolf.dk
hoteltravel2018.com
picusglancus.pl
unnatimotors.in
krasnaypolyana123.ru
smbardoli.org
blokefeed.club
evotech.lu
devdev.com.br
graftedinn.us

How to determine Win32/Kryptik.GLAE?


File Info:

crc32: 560B52EF
md5: 9d69cce4eed2e04d86274393dd928c2f
name: 9D69CCE4EED2E04D86274393DD928C2F.mlw
sha1: 005a3c4fee7afb114ed634715e37a95476f4f242
sha256: 69769df78853ba6ab9adb9c12650f90fd42239a14ed4a5aecf75b9916de3ec6d
sha512: 24d7778d5494810de934d95222afa4519efb83d5b4f1fc9d209cf99fd2867d59cb8626fc54d2eaa925a24e6ec722bbe13b33dc2b47c06774765f8a8c3668cc84
ssdeep: 6144:GpRT5wWCci1M1L42Sa6OYstaINRMCNeU:YRT5w/baLBHr
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

FileVersion: 4.6.2
Translation: 0x0809 0x04b0

Win32/Kryptik.GLAE also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0053d2981 )
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Stealer.24403
CynetMalicious (score: 100)
ALYacTrojan.Ransom.GandCrab
CylanceUnsafe
ZillyaTrojan.GandCrypt.Win32.768
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaRansom:Win32/GandCrypt.255e80be
K7GWTrojan ( 0053d2981 )
Cybereasonmalicious.4eed2e
SymantecPacked.Generic.525
ESET-NOD32a variant of Win32/Kryptik.GLAE
APEXMalicious
AvastWin32:MalwareX-gen [Trj]
ClamAVWin.Ransomware.Gandcrab5-6697262-1
KasperskyTrojan-Ransom.Win32.GandCrypt.fkb
BitDefenderTrojan.Mint.Jamg.C
NANO-AntivirusTrojan.Win32.Chapak.fifudz
ViRobotTrojan.Win32.R.Agent.304640.Q
SUPERAntiSpywareTrojan.Agent/Gen-Kryptik
MicroWorld-eScanTrojan.Mint.Jamg.C
TencentWin32.Trojan.Gandcrypt.Hvsz
Ad-AwareTrojan.Mint.Jamg.C
SophosML/PE-A + Mal/GandCrab-G
ComodoTrojWare.Win32.Vigorf.GL@7vgi1m
BitDefenderThetaGen:NN.ZexaF.34686.su0@amuB!YL
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Emotet.dc
FireEyeGeneric.mg.9d69cce4eed2e04d
EmsisoftTrojan.Mint.Jamg.C (B)
SentinelOneStatic AI – Suspicious PE
JiangminWorm.Generic.enf
AviraHEUR/AGEN.1102747
eGambitUnsafe.AI_Score_99%
MicrosoftVirTool:Win32/CeeInject.QX!bit
ArcabitTrojan.Mint.Jamg.C
AegisLabTrojan.Win32.GandCrypt.4!c
GDataWin32.Trojan-Ransom.GandCrab.S
AhnLab-V3Trojan/Win32.Gandcrab.R237847
Acronissuspicious
McAfeeTrojan-FQDU!9D69CCE4EED2
MAXmalware (ai score=100)
VBA32BScope.Trojan.Fuerboos
MalwarebytesTrojan.MalPack.GS
PandaTrj/GdSda.A
RisingSpyware.Stealer!8.3090 (CLOUD)
YandexTrojan.GenAsa!ZBAQFTBLVlA
IkarusTrojan.Crypt
MaxSecureRansomeware.GandCrypt.Gen
FortinetW32/Kryptik.GLOO!tr
AVGWin32:MalwareX-gen [Trj]
Paloaltogeneric.ml

How to remove Win32/Kryptik.GLAE?

Win32/Kryptik.GLAE removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment