Malware

Win32/Kryptik.GLDM removal

Malware Removal

The Win32/Kryptik.GLDM is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.GLDM virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Expresses interest in specific running processes
  • Performs some HTTP requests
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Collects information to fingerprint the system

Related domains:

z.whorecord.xyz
a.tomx.xyz
www.bing.com
jelouslaodnn.org

How to determine Win32/Kryptik.GLDM?


File Info:

crc32: 14480062
md5: d7b3f2aa9f2ce55b32551502b001a032
name: D7B3F2AA9F2CE55B32551502B001A032.mlw
sha1: 75036013d003f666f239339e86bd25681c485256
sha256: 0501bf3c170a90d8a7b736014d9da2c2ecde92409ddfa9007dd089b21483bf73
sha512: 6293d14b0822bdb82f13136d67c47c12c10b43ca13e228eee195d308c45749dfdb3713aac23343c2dc44f229db54baeca091c93cb1a096cf7110f76c6242d7df
ssdeep: 6144:QV4UOxC6S7F0FeHDi0+RrPexxGpbm1DfasjeFSQEX:QVr97FQeHDihRMxGdmfCFSX
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

LegalCopyright: American International Group (C) 2007-2015
InternalName: Myriad
FileVersion: 2.4.6.20
CompanyName: American International Group
FileDescription: Intuition Cmdnum Fundatin
LegalTrademarks: American International Group (C) 2007-2015
Comments: Intuition Cmdnum Fundatin
ProductName: Myriad
ProductVersion: 2.4.6.20
PrivateBuild: 2.4.6.20
OriginalFilename: Myriad
Translation: 0x0409 0x04b0

Win32/Kryptik.GLDM also known as:

K7AntiVirusTrojan ( 0053d39d1 )
LionicTrojan.Win32.Yakes.4!c
Elasticmalicious (high confidence)
DrWebTrojan.PWS.Stealer.24743
CynetMalicious (score: 100)
ALYacGen:Variant.Ransom.Troldesh.187
CylanceUnsafe
ZillyaTrojan.Yakes.Win32.69551
AlibabaTrojan:Win32/Yakes.855f4e53
K7GWTrojan ( 0053d39d1 )
Cybereasonmalicious.a9f2ce
ESET-NOD32a variant of Win32/Kryptik.GLDM
APEXMalicious
AvastWin32:Trojan-gen
KasperskyTrojan.Win32.Yakes.xiyj
BitDefenderGen:Variant.Ransom.Troldesh.187
NANO-AntivirusTrojan.Win32.Yakes.fijxnh
MicroWorld-eScanGen:Variant.Ransom.Troldesh.187
TencentWin32.Trojan.Yakes.Wtdj
Ad-AwareGen:Variant.Ransom.Troldesh.187
BitDefenderThetaGen:NN.ZexaE.34126.umKfa0pkEkdi
VIPRETrojan.Win32.Generic!BT
FireEyeGeneric.mg.d7b3f2aa9f2ce55b
EmsisoftGen:Variant.Ransom.Troldesh.187 (B)
SentinelOneStatic AI – Malicious PE
WebrootW32.Adware.Installcore
AviraHEUR/AGEN.1121150
Antiy-AVLTrojan/Generic.ASMalwS.28227A7
MicrosoftTrojan:Win32/Occamy.C
GDataGen:Variant.Ransom.Troldesh.187
McAfeeArtemis!D7B3F2AA9F2C
PandaTrj/GdSda.A
YandexTrojan.Yakes!/7yN1EMrbpY
IkarusTrojan-Ransom.GandCrab
FortinetW32/Kryptik.GKNI!tr.ransom
AVGWin32:Trojan-gen
Paloaltogeneric.ml

How to remove Win32/Kryptik.GLDM?

Win32/Kryptik.GLDM removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment