Malware

Win32/Kryptik.GLIU information

Malware Removal

The Win32/Kryptik.GLIU is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.GLIU virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Uses Windows utilities for basic functionality
  • Creates a copy of itself
  • Creates a slightly modified copy of itself

Related domains:

z.whorecord.xyz
a.tomx.xyz
resolver1.opendns.com
myip.opendns.com

How to determine Win32/Kryptik.GLIU?


File Info:

crc32: 36FC7CD4
md5: cef7c81e2921b6a1072428cefeb443b2
name: CEF7C81E2921B6A1072428CEFEB443B2.mlw
sha1: 5e5aded64c90bc2ce785903d8e55a11bcb7e325c
sha256: 2c99365f7c2535f6500e56b76e420b5dbbb8ae63680429518fbba6ac88511c94
sha512: b9a651170b381ecf752d689ca7457b611db1c1e51564c4b1a62c59bdd94228b795dd7d5a5c5aeb342870e6bf57b338d29c62ea601cad1de065b8f2a9d5a0cc12
ssdeep: 24576:ZX7N2JQMqkLMz/Y8iPw2Hp9JSB9/i/aoFwSibWlie+3xYoXnmF9ojlgHpZOP:FMJQM5U/YV96CzFwLWl1+B2ulOpZOP
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalName: Suggest While
FileVersion: 3, 8, 5357, 2696
CompanyName: Linoma Software Seem
ProductName: Suggest While
ProductVersion: 3, 8, 5357, 2696
FileDescription: Suggest While
OriginalFilename: Selectwant.exe
Translation: 0x0409 0x04b0

Win32/Kryptik.GLIU also known as:

BkavW32.AIDetectVM.malware1
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Heur.Pack.Emotet.4
FireEyeGeneric.mg.cef7c81e2921b6a1
ALYacGen:Heur.Pack.Emotet.4
CylanceUnsafe
AegisLabTrojan.Multi.Generic.4!c
SangforMalware
K7AntiVirusTrojan ( 00573e2d1 )
BitDefenderGen:Heur.Pack.Emotet.4
K7GWTrojan ( 00573e2d1 )
Cybereasonmalicious.64c90b
BitDefenderThetaGen:NN.ZexaF.34658.mr0@aSURPzji
CyrenW32/Trojan.ODQW-6104
SymantecPacked.Generic.523
APEXMalicious
AvastWin32:Trojan-gen
KasperskyHEUR:Trojan-Banker.Win32.Cridex.gen
AlibabaTrojanBanker:Win32/Kryptik.ef47e303
Ad-AwareGen:Heur.Pack.Emotet.4
EmsisoftGen:Heur.Pack.Emotet.4 (B)
ComodoMalware@#2n9n4b8quf7g9
F-SecureTrojan.TR/Crypt.Agent.ieszl
TrendMicroTrojanSpy.Win32.URSNIF.SMKA0.hp
McAfee-GW-EditionBehavesLike.Win32.Emotet.th
SophosMal/Generic-S
IkarusTrojan.Win32.Crypt
AviraTR/Crypt.Agent.ieszl
MicrosoftTrojan:Win32/Ymacco.AA2C
ArcabitTrojan.Pack.Emotet.4
ZoneAlarmHEUR:Trojan-Banker.Win32.Cridex.gen
GDataGen:Heur.Pack.Emotet.4
CynetMalicious (score: 100)
McAfeeArtemis!CEF7C81E2921
MAXmalware (ai score=82)
PandaTrj/CI.A
ESET-NOD32a variant of Win32/Kryptik.GLIU
TrendMicro-HouseCallTrojanSpy.Win32.URSNIF.SMKA0.hp
RisingTrojan.Generic@ML.100 (RDML:R5O0mAplTJaJ2CogOLk7nA)
SentinelOneStatic AI – Suspicious PE
FortinetW32/GenKryptij.CRRJ!tr
AVGWin32:Trojan-gen
Paloaltogeneric.ml
CrowdStrikewin/malicious_confidence_80% (D)
Qihoo-360Generic/HEUR/QVM10.2.9656.Malware.Gen

How to remove Win32/Kryptik.GLIU?

Win32/Kryptik.GLIU removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment