Malware

Should I remove “Win32/Kryptik.GLOF”?

Malware Removal

The Win32/Kryptik.GLOF is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Win32/Kryptik.GLOF virus can do?

  • The binary likely contains encrypted or compressed data.
  • Attempts to delete volume shadow copies
  • Installs itself for autorun at Windows startup
  • Exhibits possible ransomware file modification behavior
  • Network activity detected but not expressed in API logs
  • Creates a copy of itself
  • Uses suspicious command line tools or Windows utilities

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Win32/Kryptik.GLOF?


File Info:

crc32: 5E219289
md5: 7067bf886992c5f04606274ff0dcdbe1
name: 7067BF886992C5F04606274FF0DCDBE1.mlw
sha1: 2a00dd52253153b776d2d3529bc3be6aac069b54
sha256: 97b7acbd32577f81ac78709ac6c5c51740b5334f8d8cb690c73a713b170b2845
sha512: 6d8f2c9700ce240d6c0f240ea63c9e8c3e30208de10672c1e4e63f7679df79361f895c7412954d2f702f2e44349a000523cd72fb46ca96aaeec4299ed41bae65
ssdeep: 6144:ziqOfAkTbqvsuLGyvGbJ5dKQ1pdcVuO4zinDB+AQKnd2FTx5n/YZ9DFc9oRHy:ObbpwGXQQyVuORDBVQKnAVnwZXc9oRS
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

LegalCopyright: Copyright (c) 2014 - . All rights reserved. Pinterest
FileVersion: 6.8.95.569
CompanyName: Pinterest
FileDescription: Heatspreaders Submitting Seminar Socio
ProductName: Various
ProductVersion: 6.8.95.569
PrivateBuild: 6.8.95.569
OriginalFilename: Various.exe
Translation: 0x0409 0x04b0

Win32/Kryptik.GLOF also known as:

BkavW32.AIDetect.malware2
K7AntiVirusTrojan ( 0053ea541 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.3953
CynetMalicious (score: 100)
CylanceUnsafe
ZillyaTrojan.Encoder.Win32.360
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaRansom:Win32/generic.ali2000010
K7GWTrojan ( 0053ea541 )
Cybereasonmalicious.86992c
SymantecML.Attribute.HighConfidence
ESET-NOD32a variant of Win32/Kryptik.GLOF
APEXMalicious
AvastWin32:Malware-gen
KasperskyTrojan-Ransom.Win32.Encoder.ack
NANO-AntivirusTrojan.Win32.Encoder.fjfola
TencentWin32.Trojan.Encoder.Aexr
SophosMal/Generic-S
BitDefenderThetaGen:NN.ZexaF.34686.Dq0@a4HFvUdi
TrendMicroRansom_HPLOCKY.SME1
McAfee-GW-EditionArtemis!Trojan
FireEyeGeneric.mg.7067bf886992c5f0
JiangminTrojan.Encoder.cd
AviraTR/AD.Crysis.dknxt
MicrosoftTrojan:Win32/Occamy.B
AegisLabTrojan.Win32.Encoder.4!c
TACHYONRansom/W32.Encoder.475136
McAfeeArtemis!7067BF886992
MAXmalware (ai score=99)
PandaTrj/CI.A
TrendMicro-HouseCallRansom_HPLOCKY.SME1
RisingRansom.Encoder!8.FFD4 (CLOUD)
IkarusTrojan-Spy.Remcos
FortinetW32/Kryptik.GLOF!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Win32/Kryptik.GLOF?

Win32/Kryptik.GLOF removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment